Detection Rules
Decide what ZeusLock detects and what it does about it: set each data type to Disabled, Alert or Block, roll out safely from Alert to Block, and create your own custom patterns.
Articles in this category
- Configure Detection RulesSet what ZeusLock detects and what it does on the Rules page: the three modes (Disabled, Alert, Block), why they matter, the built-in rule groups, and how to save your changes.
- Roll Out Safely: From Alert to BlockA staged way to reach strong enforcement without disrupting your team: start every rule in Alert, watch the incidents, tune out the noise, then promote high-confidence types to Block.
- Create Custom Detection RulesCatch identifiers unique to your company with your own patterns: where to add them, what a custom rule is made of, how to write the regex (or generate it with AI), and worked examples.
- Create & Manage PoliciesPolicies are named, versioned rulesets you can apply to different teams. Create one from scratch or a template, test it in Simulation, then publish it with full version history.
- Assign Policies to Teams with GroupsGroups connect people to policies: match on Active Directory groups, departments, email domains, hostnames, or manual pins — first match wins, and a Default Group catches everyone else.
- How Jailbreak Protection WorksA dedicated AI classifier inspects every prompt for jailbreak and prompt-injection attempts — instruction overrides, system-prompt extraction, exfiltration tricks — and blocks them before they reach the AI tool.