Open detection standard -- like Sigma, but for AI agents. 311 rules, Cisco AI Defense, 97.1% garak recall.