Least-change model

Guard’s planned assessment flow is agentless and read-only. It inventories permitted resources and reports findings; it does not apply configuration changes or remediation.

Credential handling

DigitalOcean authorization data is treated as sensitive. Guard is designed so credentials are not exposed in product pages or diagnostic output.

Evidence over noise

Findings are intended to include the observed context and a recommended next step, so users can evaluate relevance before acting.

Development boundary

Guard is actively developed and is not yet available in the DigitalOcean Marketplace. Scheduled monitoring and automated remediation are not available in the initial scope.

Report a vulnerability

Send a concise report to . Do not send secrets or production credentials in the initial email. We will acknowledge and coordinate a secure follow-up.

Security questions

For non-sensitive product questions, contact .