Skip to main content
在 Manus 中运行任何 Skill
一键导入

remediate-mcp-tool-quarantine

星标3
分支0
更新时间2026年7月9日 18:17

Quarantine an MCP tool flagged by detect-mcp-tool-drift (T1195.001 supply chain compromise) or detect-prompt-injection-mcp-proxy (MITRE ATLAS AML.T0051) by appending a structured entry to a JSONL quarantine file the operator's MCP client reads at startup or via hot-reload to exclude the tool from its discoverable surface. Every action is dry-run by default, deny-listed against MCP infrastructure prefixes (mcp_, system_, internal_), gated behind an incident ID plus two distinct approvers for --apply, and dual-audited (DynamoDB + KMS-encrypted S3). Re-verify reads the quarantine file and emits VERIFIED, DRIFT, or UNREACHABLE via the shared remediation_verifier contract — DRIFT also emits a paired OCSF Detection Finding so the gap flows back through the SIEM/SOAR pipeline. Use when the user mentions "quarantine an MCP tool," "block a poisoned MCP tool," "respond to MCP tool drift," "remediate prompt injection in MCP proxy," or "re-verify MCP tool quarantine." Do NOT use for cloud IAM revocation, Kubernetes conta

安装

用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。

文件资源管理器
8 个文件
SKILL.md
readonly