Skip to main content

What is Garnet

Garnet is a runtime firewall for your code. It monitors and blocks malicious runtime behaviors—network, file, and process—across CI pipelines, Kubernetes clusters, and AI agents.

Why it exists

CVE scanners catch known vulnerabilities. Garnet stops unknown behaviors — as they execute.

Key Concepts

  • Jibril: eBPF-based runtime sensor capturing system activity.
  • Garnet Cloud: Central control plane for policy evaluation, alerting, and visualization.
  • Policies and Scopes: Declarative rules governing runtime behavior per repo, cluster, or agent.
  • Lifecycle: Event → Detection → Incident → Response.

Next: Events, Detections, and Incidents

Learn about the security event lifecycle
I