> ## Documentation Index
> Fetch the complete documentation index at: https://docs.blindsight.io/llms.txt
> Use this file to discover all available pages before exploring further.

# Protect Service

> Protect a discovered service without approving or banning it.

Pushes a ``protect`` host rule: the agent inspects the traffic, PII is
pseudonymized before the prompt leaves the device and injection is scored
and logged, and the person using it is never blocked. ``status`` is left
alone on purpose, protecting a service is not a decision about whether the
company wants it, and the review queue should still show it.

Refused on a service somebody has banned or adopted: see
``_refuse_if_decided``.



## OpenAPI

````yaml /api-reference/openapi.json post /api/runtime-security/discovery/{service_uuid}/protect
openapi: 3.1.0
info:
  title: Blindsight API
  version: 0.1.0
  description: >-
    The full Blindsight REST surface, generated from the running application.
    Replace the server host with your own deployment.


    For the Runtime Security integration surface (scan, proxy, tool calls) see
    the Runtime Security spec, which is hand written and carries worked
    examples.
servers:
  - url: https://api.your-blindsight.com
    description: Your Blindsight deployment
security: []
paths:
  /api/runtime-security/discovery/{service_uuid}/protect:
    post:
      tags:
        - runtime-security-discovery
      summary: Protect Service
      description: >-
        Protect a discovered service without approving or banning it.


        Pushes a ``protect`` host rule: the agent inspects the traffic, PII is

        pseudonymized before the prompt leaves the device and injection is
        scored

        and logged, and the person using it is never blocked. ``status`` is left

        alone on purpose, protecting a service is not a decision about whether
        the

        company wants it, and the review queue should still show it.


        Refused on a service somebody has banned or adopted: see

        ``_refuse_if_decided``.
      operationId: >-
        protect_service_api_runtime_security_discovery__service_uuid__protect_post
      parameters:
        - name: service_uuid
          in: path
          required: true
          schema:
            type: string
            title: Service Uuid
      responses:
        '200':
          description: Successful Response
          content:
            application/json:
              schema: {}
        '422':
          description: Validation Error
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/HTTPValidationError'
components:
  schemas:
    HTTPValidationError:
      properties:
        detail:
          items:
            $ref: '#/components/schemas/ValidationError'
          type: array
          title: Detail
      type: object
      title: HTTPValidationError
    ValidationError:
      properties:
        loc:
          items:
            anyOf:
              - type: string
              - type: integer
          type: array
          title: Location
        msg:
          type: string
          title: Message
        type:
          type: string
          title: Error Type
      type: object
      required:
        - loc
        - msg
        - type
      title: ValidationError

````