Data leakage ruleset
clearplane-data-leakage contains response rules derived from CRS 950–956 and native disclosure signatures. Enable Headers and body response inspection to inspect response text.
Paranoia levels and compatibility
Error documentation and source-code pages can still need a scoped policy. Streaming and oversized responses have log-only response decisions; see inspected traffic for those boundaries.
Start in Detection, review detections, and configure only the exclusions needed for the affected route and field.
See the measured coverage for the exact tested payload hashes, missed detections and false-positive rates. Ruleset operation explains activation, stages and rollback.