PARTNERS

Add selected Workbench capabilities through bounded OEM and partner integrations

Deliverablesdeliverable
deliverable

Artifact Analyzer Figures

Canonical figures for the Artifact Analyzer.

Public sample
Client deliverable
public-sample
System
Artifact Analyzer Figures
Environment
Production pilot

# Artifact Analyzer Figures

ART-01

Artifact Analyzer Overview

The analyzer turns code, binaries, browser artifacts, and protocol surfaces into structured capability and authority context.

Transformation figure showing implementation artifacts entering the analyzer and becoming extracted capabilities, identities, permissions, sinks, and evidence.

Source and packageartifactsCompiled or packagedartifactsBrowser and clientartifactsMCP, API, and protocolsurfacesTRANSFORMATIONArtifactanalysisExtract structure and metadataIdentify exposed capabilitiesIdentify identities and permissionsIdentify sensitive or consequentialsinksExtractedmetadataCapability andauthoritycontextEvidence-linkedfindingsScanner andgraph handoff
ART-02

Artifact to Authority Context

Raw implementation artifacts become more useful when their exposed capabilities, identities, permissions, and sinks are made explicit.

Comparison between raw implementation artifacts and structured authority context extracted from them.

BEFORERaw artifactFiles, packages, binaries, orschemasFunctions, symbols, routes, andconfigurationSecurity significance remainsimplicitAFTERStructured authority contextExposed capabilityInvoking identity or actorRequired permission or approvalControlled and untrusted inputsSensitive data or external effectQUALIFIED INTOEVIDENCE BOUNDARYStatic extraction is evidence of exposure, not executionRuntime traces remain required for observed behavior
ART-03

Artifact Evidence Outputs

The analyzer returns structured findings, extracted metadata, authority context, and evidence references for downstream review.

Layered artifact-analyzer output stack from extraction evidence through structured context, findings, graph inputs, and reporting.

PROVENANCEExtraction evidenceArtifact locations and symbolsSchemas, routes, and configurationDeclared permission and policy evidenceCapability and authority contextCapabilitiesActors and identitiesSensitive and consequential sinksTrust and protocol boundariesFindings and graph inputsEvidence-linked findingGraph entity referenceRelationship candidateReview outputsStructured JSONTechnical review summaryScanner and graph handoff