Expand TUI and package recovery planning
This commit is contained in:
parent
cab60cd633
commit
51d52b5229
10 changed files with 511 additions and 41 deletions
|
|
@ -114,7 +114,8 @@ create artifacts.
|
|||
Current IPS scope is explicit prevention workflow, not transparent inline
|
||||
enforcement. Sentinel can recommend evidence preservation, process
|
||||
freeze/termination, outbound IP blocks, systemd unit disablement, suspicious-file
|
||||
quarantine, package-owner lookup, and follow-up verification. It does not
|
||||
quarantine, pacman package-owner lookup, signed-cache verification, trusted
|
||||
package reinstall, FIM re-anchoring, and follow-up verification. It does not
|
||||
execute those commands until a future audited `--apply` workflow is designed,
|
||||
tested, and documented.
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue