NEW

Start with the pressure: sales, launch, abuse, agents, data, or guardrails

Publication DSL

Compiler repair proof gallery

Six canonical figures rendered through six different, contract-validated geometries.

SP-01

layered cutaway

SP-01

Keep the scanner. Add the finding and evidence plane.

The scanner remains the product surface while SecEng adds AI-native finding depth, evidence discipline, attack-path context, and lifecycle support.

The scanner remains the product surface while SecEng adds AI-native finding depth, evidence discipline, attack-path context, and lifecycle support.

Partner scannerTarget or application • Existing scan findings • Current vulnerability object • Lifecycle stateAI-native finding enrichmentEvidence strengthValidation queueThroughline and APC linkageRemediation contextRetest stateOUTPUTPartner-native result

AC-03

swimlane

AC-03

One course. One platform. One distribution pilot.

A bounded pilot packages one representative course, validates it in the target LMS or marketplace workflow, and returns the operational assets needed for launch.

A bounded pilot packages one representative course, validates it in the target LMS or marketplace workflow, and returns the operational assets needed for launch.

STAGE 1STAGE 2STAGE 3STAGE 4STAGE 5Partner providesSecEng provesPartner receivesOnerepresentativecourse or moduleTarget LMS ormarketplaceRequired SCORMor xAPI profileListing andmetadatarequirementsLaunch successcriteriaCourse packagingLearning-eventmappingAssessment andcompletion logicPlatform importand launch testListing andenablementassetsValidated LMSpackageCompletion andactivitycontractMarketplace-readylistingInstructor andsupport assetsProductionrollout planDecision gateImport succeeds • Events are usable • Instructional quality holds • Launch path is credible

APC-04

directed topology

APC-04

Throughline Value Proposition

Throughline qualifies and explains multi-step risk rather than merely correlating alerts or drawing speculative paths.

Comparison between alert correlation and evidence-qualified attack-path analysis with explicit validation and residual state.

Correlation or path sketchThroughline qualificationMaturity boundaryNearby or relatedfindingsPossible relationshipsUnbounded impacthypothesisEvidence linked toeach stepSupported transitionorderAlternativeexplanationschallengedBounded consequenceResidual andunresolved stateEvaluation-ready pathanalysisNo automaticenterprise-readinessclaim
Grounded / validated -- evidence-backed and confirmedInferred / under review -- plausible, not yet confirmedResidual -- unresolved after review

TECH-04

radial orbit

TECH-04

Integration Family Map

Technology partnerships span data sources, scanners, offensive platforms, identity systems, workflow tools, and evidence consumers.

Ecosystem map of technology partner families surrounding shared SecEng contracts and evidence.

Core
SecEng interoperability core
Shared contracts
  • Findings, evidence, traces, and lifecycle contracts
  • Identity, provenance, and versioning
  • Read, enrich, and return workflows
  • Scoped API access and approval boundaries
Data and telemetry
Code and artifact sources • Runtime and observability sources
Security platforms
Scanner and AppSec platforms • Offensive and adversarial platforms
Identity and control
Identity and permission systems • Policy and approval systems
Workflow and evidence consumers
Developer and remediation workflows • Evidence, reporting, and governance consumers

SCN-01

matrix heatmap

SCN-01

AI-Native Scanner Coverage

The scanner evaluates AI-specific code and workflow surfaces that conventional AppSec categories do not fully describe.

Matrix showing scanner coverage across prompts, retrieval, agents, tools, MCP, authority, evidence, and lifecycle stages.

DiscoveryAnalysisEvidenceRetest
Prompts and instructionsSystem prompts, templates, policy text, and instruction boundaries.
Covered
Covered
Covered
Covered
Retrieval and contextCorpus access, provenance, tenant boundaries, and prompt assembly.
Covered
Covered
Covered
Partial
Agents and orchestrationPlanning, delegation, memory, and workflow transitions.
Covered
Partial
Partial
Planned
Tools and MCPTool schemas, invocation boundaries, and consequence-bearing actions.
Covered
Covered
Covered
Partial
Identity and authorityUser, agent, service, and delegated permissions.
Covered
Partial
Partial
Planned
Evidence and lifecycleFinding state, provenance, remediation, and rescan behavior.
Not applicable
Covered
Covered
Covered
CoveredPartialPlannedNot applicable

EVD-03

evidence dossier

EVD-03

Claim State Boundary

Observed, reproduced, grounded, inferred, rejected, and analyst-reviewed claims must remain visibly distinct.

Diagram showing observations and reproductions, grounded claims, review boundary, explicit inference, rejected claims, and analyst-reviewed publication state.

SUPPORTED CLAIMSupported claimGroundedQualified consequence1Observed

A behavior, artifact, configuration, or trace was directly captured.

2Reproduced

The behavior was repeated under controlled conditions.

3Challenge evidence and alternatives4Approve publication state5Inferred

Plausible extension that remains explicitly provisional.

6Rejected

Unsupported, contradicted, or not reproducible.

7Unresolved

Evidence is insufficient for a defensible conclusion.