reject: bare IP literal (v4 or v6) in the URL is rejected regardless of range.
Forces resolution through a public DNS name (AdCP Verified behavior).allow: IP literal is permitted subject to the CIDR deny lists and the
SDK shared-address setting below. Local-dev default.Optionalshared_SDK extension controlling the shared private/non-routable classifier in addition to the explicit contract CIDRs. Built-in policies set this so spread-based policy overrides retain their security posture.
When omitted, custom policies own their private CIDR rules. The shared always-blocked tier is enforced regardless of this setting.
SSRF policy the runner enforces when fetching a
preview_url. The default exportDEFAULT_SSRF_POLICYmirrors the contract's explicit deny lists.