Skip to main content

Milestone 4.3 — Security analysis (EHX Secure preview)

Status: Preview shipped
Depends on: M3.5 composition, M3.6 validation, M4.1 NodeOps context
Suite: /secure · Intent: security_analysis (Team+)
Tracking: ehx-kb#12

Shipped (preview)

DeliverableImplementation
Infrastructure security checksRestricted pod security Deployment sketch
Exposure analysisPublic Service audit + TLS ingress minimum
Security recommendationsPrioritized findings YAML template
Web3 RPC risksHardened Geth Compose + exposure checklist

Bundle: security_analysis recipe — 8 files (namespace + 7 security presets)
Catalog: module_packs/security v0.2.0 · composition-recipes.json v0.5.0

Free tier: security_posture intent (baseline deny + sample workload) unchanged.

Generate

  1. Confirm Team tier (/checkout + same browser principal)
  2. Open /chatsecurity analysis exposure review for stagingGenerate bundle
  3. Or: /chat?intent=security_analysis&message=...&send=1

Not yet shipped

  • Live Trivy/Kubescape/Falco scan integration
  • Automated exposure discovery against running clusters
  • Continuous drift detection (Phase 5+)