Policy Examples
Sample stella-dsl@1 policies illustrating common deployment personas. Each example includes commentary, CLI usage hints, and a compliance checklist.
| Example | Description |
|---|---|
| Baseline | Balanced production defaults (block critical, respect strong VEX). |
| Serverless | Aggressive blocking for serverless workloads (no High+, pinned base images). |
| Internal Only | Lenient policy for internal/dev environments with KEV safeguards. |
Policy source files (*.stella) live alongside the documentation so you can copy/paste or use stella policy new --from file://....
Last updated: 2025-10-26.