Access Paths
What an access path is, how it is materialised from the entity graph, the flat API endpoints, and how the detail page surfaces risk, ownership, and remediation. Includes proposed identity-scoped grouping design (not yet shipped).
What an access path is, how it is materialised from the entity graph, the flat API endpoints, and how the detail page surfaces risk, ownership, and remediation. Includes proposed identity-scoped grouping design (not yet shipped).
Sprint priority #1 plan: restructure overview, cluster-detail, and authority-path-detail surfaces to answer the three CISO questions (what happened, am I exposed, what should I do) within five seconds.
Architecture of the rule-based drift detection system — how scope, ownership, and reachability drift evaluators work, how findings are produced, and how the remediation service maps findings to pri...
Founder feedback (2026-02-12 capture): high-level principles for the platform — was/is delta view, 5-second-scannable homepage, top-10-to-action focus, RG-score tooltips, and sensitivity-of-data on the graph.
Founder response on access-path identity grouping. Reframes the problem from aggregation to access chain as the unit of risk, control, remediation, and prioritization.
Consolidated implementation plan for Exposure Aggregation APIs (G1), Remediation Content Generation (G2), and Scope Drift UX (G3)
Prioritized implementation plan derived from 5-agent platform review. Maps to Sergey's March 13 sprint email priorities. Includes effort estimates, file locations, and acceptance criteria for each fix.
Gap analysis comparing Sergey's Notion product updates (drift-ux, clarity, actionability, authority-paths-primer) against existing sv0 plans, with a coverage matrix and updated sprint priorities.
W1 Gap 2 plan: replace static one-size-fits-all remediation strings in evidence packs with context-aware content that names entities, roles, resources, sensitivity levels, and source systems.
CEO direction for the missing remediation-plan layer and the interim sequencing changes to the Authority Exposure Brief.
SecOps analyst Round 2 acceptance review — visual review of 2026-03-19 snapshot, verdict: NEEDS WORK (improved).
SecOps analyst review — full morning triage workflow against live production, verdict: NEEDS WORK.
Founder feedback on the March 29 Wiz UX pattern analysis, with explicit direction on remediation aggregation, finding-detail structure, and scope-drift presentation.