Data flow connects untrusted sources to dangerous sinks (taint-style paths) over the application model. It explains how a value might reach eval, SQL, SSRF clients, file APIs, and similar sinks.

CLI

Diagnostic only (exit 0). Soft-run during axguard audit when the stage succeeds.

MCP

How to read results

  • Paths are progressive and scoped — not a dump of an entire program graph
  • Missing dataflow support for a language/framework soft-fails; re-run axguard flow . to see errors
  • Dataflow supports Judge and attack paths; it is not itself a severity list
Slash command: /axguard-flow.