Egress Allowlist - What domains should we add to the default profile? #462
pallakatos
started this conversation in
Ideas
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Egress Allowlist — what domains should we add to the default profile? 🌐
kars sandboxes are locked down by default: the egress-guard init container blocks all outbound traffic except what's explicitly allowed, and the inference router is the only governed network path out. Outbound destinations are managed through a signed OCI allowlist profile so you can trust exactly what your agents can reach.
We're refining the default egress allowlist profile and want your input. Which common APIs and domains do you most frequently need your agents to reach?
Some categories we're considering:
Tell us:
Note: anything added to the default profile goes through security review and is published as a signed OCI allowlist — your suggestions help us prioritize. 🔐
Drop your wishlist below! 👇
All reactions