Architectural Analysis: Exposure as a Persistent Entity
Composed analysis turning founder W1 feedback into an architecture: Authority Path is the durable object, Exposure is a time-bound finding on a path, and Risk Clusters group related exposures.
Composed analysis turning founder W1 feedback into an architecture: Authority Path is the durable object, Exposure is a time-bound finding on a path, and Risk Clusters group related exposures.
Strategic review of the 'Authority Path' concept after the Primer shift (execution-determined, not configuration-determined)
Merges W1.1 (persistent authority paths + path-level findings) with Phase 4 (platform-side graph computation, import-by-type ingestion)
Research on cross-connector entity correlation in the platform: ProvisionUser Agent scenario shows authority paths cannot be fully reconstructed from live connector data when execution crosses platform boundaries (Foundry to Logic App to ServiceNow).
9-type entity system (identity, workload, connection, credential, owner, role, permission, resource, execution_evidence) and execution chains for the SecurityV0 execution/authority graph
Comprehensive feasibility study for execution-determined authority paths
Multi-role (architect, CSO, product owner, developer, integrator) analysis of founder feedback from February 18, 2026
Canonical definitions for SecurityV0 domain terminology — NHI, execution chains, entity types (identity, workload, connection, credential, owner), relationship types (RUNS_AS, CALLS, INVOKES, USES,...
Critical review of Doc 15 and implementation planning after Feb 18 founder UX/logic updates
Plan to give ServiceNow scheduled jobs that call Azure Function Apps via function-key auth a discoverable identity binding so they produce complete authority paths instead of unlinked workloads with empty execution_paths.
Plan to implement the authority-first UX correction: configuration discovery (authority paths) is the hero metric; execution proof is best-effort and labeled as observed.
Strategic research on SecurityV0's Pre-Deployment Assurance capability (W2 core)
Comprehensive implementation plan synthesizing workload rename, W1 evaluator rules, risk cluster computation, exposure concept, posture summary, and full UX redesign