RU · PUBLIC PRODUCT LAYER
UniverseEN ↗
Bounded engineering audit

Проверить, может ли агент сделать больше, чем разрешил оператор.

И второй вопрос: можем ли мы независимо доказать, что он реально сделал? Это не generic LLM benchmark и не обычный network pentest.

PRIMARY$4,900 fixed
WINDOW5 рабочих дней после complete evidence/access + written scope
OBJECT1 staging/test workflow
FAILURE PLAN10–20 agreed scenarios
Four-plane model

Полномочия без evidence не считаются доказанно безопасным действием.

Мы разделяем право действовать, доказательства до действия, подтверждение эффекта и recovery. PASS одного слоя не заменяет другой.

01

Authority

Actor/identity, tools and credentials, read/write surfaces, approval gates, target binding, scope/expiry, recovery path.

02

Evidence

Inputs, source freshness, object binding, versions, approvals, state and external confirmation required at decision time.

03

Effect

Observed external consequence, duplicate/replay semantics, partial execution, side effects and receipt integrity.

04

Recovery

Fail-closed behavior, rollback/compensation, retry boundaries, reconciliation and retest evidence.

Failure plan

Тестируем согласованные failure modes, а не “ломаем всё подряд”.

Approval mismatch / stale approval

Wrong-object or target-binding drift

Read-vs-write boundary failure

Replay / duplicate effect

Stale source / false green

Partial execution / ambiguous receipt

Recovery and retest mismatch

Complete Primary package

Восемь deliverables. Один ограниченный audit.

A1–A4 — Authority Ledger, Evidence Contract, Finding Record, Decision Memo — остаются decision-artifact spine, но коммерческий пакет шире.

01Executive report
02Authority / effect map
03Test inventory and scenario results
04Reproducible evidence pack
05Finding cards: impact, evidence, limitations, confidence
06Prioritized repair backlog
07One retest
08Evidence manifest / hashes where applicable
Rules of Engagement

Публичная форма не даёт разрешения на тестирование.

До исполнения нужны письменный scope, environment, allowed/prohibited tests, access approver, data/secret boundaries, safe replay conditions и owner authorization. Русский локальный intake только готовит brief.

Testing authorization: NOT GRANTEDдо отдельного письменного RoE
Claim ceiling

Что аудит не обещает.

Не certification. Не legal advice. Не гарантированная security. Не universal “no-bypass”. Не provider-wide enforcement. Не доказательство отсутствия неизвестных дефектов. Production penetration testing по умолчанию не входит.

Сравнить scope и цены →