Rule sets
Declarative .rules files that enforce policy on agent tool calls before they execute. Versioned, content-hashed, and signed per author. Browse them on the home page.
Discover and install signed UI extensions for the SSG dashboard. Every plugin is verified by Ed25519 signature and content-hash before it loads.
Declarative .rules files that enforce policy on agent tool calls before they execute. Versioned, content-hashed, and signed per author. Browse them on the home page.
Signed tarballs containing a plugin.json manifest plus a static UI bundle. They extend the SSG dashboard without bundling features into core SSG. Installed via ssg plugins install <id>.
Both surfaces use the publisher's Ed25519 keypair issued via ssg keys generate. SSG verifies content hash + signature against the hub-recorded fingerprint before any code or rule is activated.