Docs / Agents / Risk Baselines

Risk Baselines

Capture baseline configurations for agents to detect drift and anomalies.

What this covers

Baseline snapshot

Baseline is captured on activation and hashed.

Drift detection

Detect configuration drift from baseline.

How to use

1. Capture baseline

Record normal operations and expected behavior.

2. Set thresholds

Define drift and anomaly thresholds.

3. Monitor drift

Review deviations from baseline.

4. Export report

Generate baseline evidence report.

Console pages

Key API endpoints

GET /agents/risk/baselines — List baselines
GET /agents/{id} — Agent + baseline detail

Evidence outputs

Baseline registry snapshots
Baseline hashes + receipts