Architecture Summary
Repository-local proof surface for security operations and controlled automation, backed by Node/TypeScript runtime, GitHub Actions validation.
Free threat-response tabletop packet for alert triage and escalation practice.
Built for security analysts and tabletop exercise owners. Use the readiness check below, inspect the implementation, and compare public aggregate demand without submitting project data.
Your selections stay in this browser. Nothing entered here is uploaded.
These notes are derived from this repository's checked-in system architecture, not generic product copy.
Repository-local proof surface for security operations and controlled automation, backed by Node/TypeScript runtime, GitHub Actions validation.
Primary domain: security operations and controlled automation.
Operating model: segmented ingest, least-privilege response services, audit trails, and emergency rollback boundaries
Edge-first deployment model with server-side AI adapters and public-safe secrets handling Security control plane with audit logging, isolation boundaries, and response review gates
identity boundary and least-privilege service access environment separation for local, staging, and managed runtime paths secret storage outside source and deterministic fallback for missing credentials observability hooks for logs, metrics, traces, and audit events rollback path...
anonymous aggregate threat-response topic interest and packet-open counts
ads allowed only on public tabletop resources; threat workbench, evidence, incident notes, and dashboards are ad-free
Only four coarse fields are accepted after consent: repository, allowlisted event, public surface, and consent-policy version. Raw inputs, URLs, referrers, identities, files, prompts, and sensitive details are rejected.