Metadata only
PermitGraph analyzes identity, credential-record, privilege, ownership, and resource metadata. Common secret-like keys are rejected before scanning; customer review is still required.
CURRENT PRODUCT BOUNDARY
PermitGraph is a customer-run exposure diagnostic for AI agents and machine identities. The default pilot keeps raw exports in the customer environment, accepts metadata rather than credential values, and produces deterministic evidence for human review.
CURRENT CONTROLS
These are implementation and delivery boundaries in the current scanner. They are not certifications and do not replace the customer's own security review.
PermitGraph analyzes identity, credential-record, privilege, ownership, and resource metadata. Common secret-like keys are rejected before scanning; customer review is still required.
The packaged CLI reads a local JSON file and has no runtime package dependencies or telemetry path. The public worksheet calculates its graph, findings, and digest in the browser without submitting worksheet values.
The customer keeps raw exports inside its environment and shares only an approved screen view, findings list, or evidence package. A controlled transfer requires written terms before it begins.
A SHA-256 digest covers the canonical normalized graph and findings. A matching digest shows the reviewed evidence has not changed; it does not prove the source export was complete or accurate.
DEFAULT DATA FLOW
The customer decides what is exported, what is scanned, and what evidence may leave its environment.
An authorized operator selects approved identity and resource metadata.
The customer removes disallowed fields and confirms no secret values are present.
The CLI or browser worksheet creates findings and the integrity digest.
The customer approves a screen view, findings list, or evidence package for review.
FIT-CHECK CONTACT DATA
This describes the current form implementation. It is separate from scanner input and does not replace company-specific commercial, security, or privacy terms.
A prospect record is created only after the visitor submits the form and affirmatively asks Pith Strategies to contact them.
Name, work email, company, optional role, selected system families, approximate identity range, decision window, stated workflow and decision, consent, source-page attribution, request ID, creation time, and request status.
Pith Strategies uses the record to evaluate and respond to the requested PermitGraph fit check, suppress a repeat submission from the same email for 15 minutes, and track the request's sales stage. It is not scanner input.
To ask about, correct, or request deletion of a submitted fit-check record, email pithstrategies@gmail.com from the submitted address or include the request ID so Pith Strategies can verify the record.
INPUT CONTRACTS
These are local adapters for approved JSON exports, not hosted collectors or direct connections to customer systems.
Agent, owner, credential alias, allowed action, and target-resource relationships.
Workloads, roles, policy grants, trust relationships, and credential lifecycle metadata.
Service principals, application permissions, delegated grants, directory roles, and credential metadata.
Workflows, repositories, environments, permission declarations, and secret-record metadata, not secret values.
Customer-approved server catalogs, agent owners, credential aliases, effective tool grants, auth posture, and customer-classified action risk.
Edge Functions, project roles, grants, RLS state, data surfaces, and supporting identity metadata.
EXPLICIT LIMITS
RESPONSIBLE REPORTING
Email pithstrategies@gmail.com with the subject [SECURITY] PermitGraph vulnerability report. The standard discovery file is available at /.well-known/security.txt.
Include the affected URL, release, CLI command, or adapter, the expected security impact, and concise reproduction steps using non-secret metadata.
Do not send passwords, tokens, private keys, client secrets, real customer exports, personal data, or destructive payloads. Request a secure coordination method first.
Do not disrupt availability, access or modify another person's data, create persistence, use social engineering, or test systems and data you are not authorized to use.
This policy does not promise a bounty, response deadline, service level, or authorization beyond applicable law and access you already have.
SECURITY FAQ
For a company-specific review, Andrew will document the approved sources, operators, evidence-sharing method, and required commercial or security terms.
Not in the default delivery mode. The customer runs PermitGraph locally and authorizes what screen view, findings, or evidence package may be shared. Any raw-metadata transfer is an exception that requires written confidentiality, access, retention, deletion, and incident terms first.
No. The schema is metadata-only and rejects common password, token, private-key, client-secret, API-key, bearer, JWT, and connection-string field names. Automated rejection cannot identify every sensitive value, so the customer must still review each export.
No. The packaged CLI performs local file reads, optional local report writes, and local SHA-256 calculation. It has no runtime package dependencies, hosted collector, or telemetry path.
The worksheet sends nothing. It builds the normalized graph, runs the scanner, and creates downloadable evidence in the browser. A separate fit-check form submits business contact details only when the user explicitly completes and submits it.
It proves that the normalized graph and findings covered by that digest have not changed. It does not prove that the source inventory was complete, accurate, authorized, or secure.
Not today. The current product is a deterministic exposure diagnostic and evidence generator. Continuous collection, tenant isolation, SSO/RBAC, formal assurance, and runtime enforcement remain future product requirements.