Skip to content
Read-only by architecture

Map the cloud.
Think in paths.
Get sharper every run.

A graph-engineered team of security agents turns Azure configuration into evidence, attack paths, and board-ready answers—while a hard memory firewall keeps learning separate from enforcement.

17coordinated agents
4native AI runtimes
1canonical graph
EXPLICIT GRAPHPARALLEL SPECIALISTSBOUNDED REFLECTIONFAIL-CLOSED SAFETY

01 / GRAPH ENGINEERING

Every decision has an edge.

Not a loose prompt chain. The engagement is an explicit, inspectable state graph with typed channels, bounded loops, parallel fan-out, and deterministic reducers.

Read the graph contract

02 / AEF-COMPATIBLE LEARNING

Learning lives inside the lines.

Each run adds evidence. Only independently repeated lessons improve the agent team.

Observe

Capture each run as an attributed episode—not as trusted knowledge.

Corroborate

Require matching evidence from two distinct runs for the same specialist.

Promote

Load only bounded parameters and inert methodology that passed the evidence gate.

MEMORY FIREWALL

Learning may write: inert, versioned methodology memory

Learning can never write: code, prompts, tools, guardrails, permissions, or active-lane authorization

03 / AGENT TEAM

One mission. Sixteen specialists.

Pentest Manager reads the graph, validates scope, and sends focused work to agents with deep Azure domain methodology.

04 / ENFORCEMENT

The model suggests.
The guard decides.

Every runtime shares one deterministic, fail-closed guard core. Unknown or mutating Azure commands stop at the boundary. Active testing stays off until scope and human authorization unlock the exact lane.

Inspect safety architecture
guard.mjs

$ az resource list --subscription in-scope

ALLOW recognized read operation

$ az vm delete --name production

DENY mutating operation blocked

$ methodology memory write

ALLOW namespace: memory/methodology/

$ guardrails/core write

DENY immutable enforcement surface

ONE GRAPH / FOUR RUNTIMES

Bring the team to the model you use.

GitHub CopilotClaude CodeOpenAI CodexCursor

Authorized assessment only. AI findings require independent human validation. Independent demonstration; not affiliated with or endorsed by Microsoft.