doggy8088/litellm-skills · Archived

litellm-guardrails-safety

設定或審查 LiteLLM ?

First seen Jul 30, 2026

Installation

$ npx skills add doggy8088/litellm-skills --skill litellm-guardrails-safety

Stronger alternatives

This repository is archived — consider an actively maintained alternative.

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from doggy8088/litellm-skills.

npx skills add doggy8088/litellm-skills

Browse all from doggy8088/litellm-skills

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Repository health

Stars 23
Default branch main
Open issues 0
Status Archived

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 1,604 B
  • docs SUMMARY.md 302 B

History

  1. First seen on skills.sh
  2. First recorded snapshot · 1 installs

SKILL.md

LiteLLM Guardrails Safety

工作流程

  1. 建立 threat model,分類輸入、輸出、tool、MCP、資料外洩與越權風險。
  2. 查核 LiteLLM 版本、guardrail provider、mode、授權與失敗語意。
  3. 選擇 precall、postcall、premcpcall 等正確執行點。
  4. 必須執行的防護設為 default-on;工具權限採預設拒絕及最小 allowlist。
  5. 對工具名稱與參數同時限制,避免只允許名稱卻放任高風險 arguments。
  6. 明確定義 provider error 與 guardrail error 的 fail-open 或 fail-closed 行為。
  7. 測試 allow、deny、mask、rewrite、provider error 與 guardrail error。

需要 tool permission config、PII config 與測試規格時,讀取 [實驗與參考](references/guide.md)。

安全底線

  • 高風險安全控制採 fail-closed,除非 threat model 明確證明可降級。
  • 不以 guardrail 取代 key、team、model access、sandbox 或 audit log。
  • Allow 規則不得使用無限制的 .*。
  • 自訂 hook 不記錄 secret、完整敏感 prompt 或未遮罩個資。

驗收

  • Threat model 與每條規則可追溯。
  • 未匹配工具預設拒絕。
  • 參數限制有合法與違規 fixture。
  • Guardrail 故障行為可重現,且高風險路徑不會靜默放行。