dtwo Policy Store

Policies tagged "linear"

linear · ingress

Block Linear Webhook Creation

Unconditionally denies any Linear tool that creates, updates, or deletes a webhook — linear createWebhook, linear deleteWebhook, and update variants.

linearguard-webhook-persistenceingresswebhookexfiltrationsoc2

linear · ingress

Default-Deny Unknown Linear Tools

Pins an audited allowlist of the verified official Linear MCP tool names and allows a call only when the incoming tool name matches an allowlisted name on…

lineardefault-deny-unknown-toolsallowlistingresssoc2

linear · egress

Fence Roadmap and Initiative Reads (Egress)

Fences the responses of Linear's roadmap, initiative, and strategy read tools.

linearfence-sensitive-scopesroadmapegresssoc2

linear · ingress

Freeze Destructive Linear Operations

Denies destructive Linear tool calls — the delete , archive , and session-logout classes — unless the caller's IdP token carries the placeholder group…

linearfreeze-destructive-opsrecord-integrityingresssoc2

linear · egress

Linear: Redact Customer Revenue and Contacts

Masks commercial and contact identifiers in the responses of Linear's Customers read tools before they reach the agent.

linearredact-piipiidlpredactionegressgdpr-ccpasoc2