Real configuration shapes
Acme Capital is fictional, but its stack is real configuration shapes — ingested exactly as your production configs would be, by the same extractor engine that covers 15 vendors.
Drop a FortiGate policy block below: the engine extracts the network graph, simulates one attack path, surfaces a single choke-point fix, and headlines an industry-default dollar estimate. Same extractor, same min-cut, same FAIR engine as the product — one input, so network-layer only.
Analyzed in memory · never stored · 32 KiB cap · 8 runs / 5 min / IP
Acme Capital is a fictional 200-person fintech. The graph below is real engine output from the same 15-vendor extractor engine that would parse your production configs, with every edge carrying its MITRE technique. Expand any path to walk its steps.
Three things make this graph different from the marketing animations on most security vendor sites.
Acme Capital is fictional, but its stack is real configuration shapes — ingested exactly as your production configs would be, by the same extractor engine that covers 15 vendors.
26 MITRE techniques map to specific edge types, and each path is matched against 11 named threat groups — inferred edges are dashed and explained, never hand-waved.
A breadth-first search runs from every entry point to every sensitive resource; the single change that breaks the most paths surfaces first.
Dashboards ask you to trust the vendor. A CyberTwin run ends in an artifact you can hand an auditor — and they can re-check it without trusting us.
Every proof carries the date it was recorded, from a real timestamp — a position you can defend later, not a live gauge that resets every time someone looks.
Entries are Ed25519-signed and chained in an evidence ledger — tamper a single field, including the record's own honesty framing, and the signature breaks.
A counterparty re-parses the same artifact and re-derives the result themselves. The verifier runs in the browser: offline, no login, nothing uploads.
The sample is a fictional estate with a real signature — tamper with one field, including its own disclaimer, and verification fails.
The sandbox and the Acme graph are the demo. The Program tier runs the same analysis against your real environment — re-upload a fresh export any time and the engine re-checks your posture; re-parseable artifacts re-prove it.