Claim Validation Matrix (P0)
Legend:
CONFIRMED: Backed by code path or active deployment docsTARGET: Stated architecture direction; not fully active in current implementationASSUMPTION: Operational expectation that depends on customer environment
| Page | Claim | Status | Evidence Source |
|---|---|---|---|
| Executive Overview | Distributed scanning model with worker-based execution | CONFIRMED | deploy/prod/README.md, internal/transport/http/handler/scan.go |
| Executive Overview | Supports air-gapped environments | CONFIRMED | docs/TECH-BRIEF.md, deploy/prod/README.md |
| Why Cyprob vs Legacy | Context-aware + evidence-first reduces analyst noise | CONFIRMED | docs/SALES-BRIEF.md, docs/VULNTOR-EE-SUMMARY.md |
| Why Cyprob vs Legacy | Horizontal scaling via worker expansion | CONFIRMED | deploy/prod/README.md |
| Quick Start | Login endpoint and org membership context | CONFIRMED | internal/transport/http/handler/auth.go |
| Quick Start | Scan create endpoint payload (target, scan_type) | CONFIRMED | internal/transport/http/v1/dto/scan.go, internal/transport/http/handler/scan.go |
| Quick Start | Report create requires template_type + format | CONFIRMED | internal/transport/http/v1/dto/report.go, internal/transport/http/handler/report.go |
| Air-Gapped Deployment | Controlled offline bundle transfer and validation model | ASSUMPTION | deploy/prod/README.md, docs/DEPLOY-001-PRODUCTION-DOCKER-COMPOSE.md |
| HA Deployment Model | Standalone and HA-Lite deployment modes | CONFIRMED | deploy/prod/README.md |
| HA Deployment Model | HA-Lite is not multi-region active-active | CONFIRMED | deploy/prod/README.md |
| Security Model | Auth/session endpoints and route-level access model | CONFIRMED | internal/transport/http/handler/auth.go, internal/transport/http/route.go |
| Security Model | Vault-based secret management in production | CONFIRMED | infra/vault/README.md, deploy/prod/README.md |
| Security Model | Wasm plugin execution currently active in production | TARGET | docs/TECHNICAL-DEBT.md |
| FAQ | Expired license behavior includes grace/read-only path | CONFIRMED | internal/platform/license/manager.go, internal/platform/license/license.go, internal/platform/state/middleware.go |
Review Date
- 2026-02-18
Reviewer Note
This matrix validates documentation claims against the current codebase and deployment docs in cyprob-ee. Re-check before each external release/demo cycle.