API schema ruleset

clearplane-api-schema supplies a rule for each supported API-schema violation kind. Attach an API schema to the route's WAF policy and enable validation: activating this ruleset alone does not select a schema. Validation results become scores; the policy mode and ruleset stages determine whether they can block.

Paranoia levels and compatibility

An outdated schema can reject a legitimate client. Check required parameters, types, formats, request media types and additional-property rules against actual API traffic.

Start in Detection, review detections, and configure only the exclusions needed for the affected route and field.

See the measured coverage for the exact tested payload hashes, missed detections and false-positive rates. Ruleset operation explains activation, stages and rollback.