Labs
Small local labs that exercise specific security decisions with positive and negative fixtures. Their test scope is intentionally narrower than a production deployment.
- AI-agent external tool broker
- Azure landing-zone hierarchy and policy
- Terraform plan and Rego policy
- IAM and workload-identity decisions
- Kubernetes admission, network, and image policy
- OAuth/OIDC token boundaries
- PostgreSQL row-level security
- Secure CI/CD boundaries
- Artifact provenance and SBOM verification