New:System Graph 2.0See System Graph 2.0
Enterprise resource

Secure Deployment Checklist

Checklist for secure enclave, on-prem, and private cloud deployment patterns.

Checklist

  • No inbound access to protected networks required
  • Signed test capsules with versioning
  • Enclave gateway verifies signatures and policy
  • Local edge runner deployment documented
  • Runtime execution without external model calls
  • Local-only evidence mode available
  • Sanitized egress optional and approved
  • PAM-compatible credential brokering
  • Audit trail for capsule promotion and runs
  • Human approval on remediation paths
  • Air-gapped import procedure documented
  • Private cloud region and isolation confirmed
  • On-prem control plane option evaluated
  • Redaction policies for screenshots and fields
  • Runner allowlists and binary signing
  • SSO/RBAC for control plane users
  • Incident response for compromised runner
  • Data flow diagram reviewed by security
  • Conservative pilot scope defined
  • Regulated workflow representative scenario documented
  • Egress denial default verified
  • Upgrade cadence aligned with change windows

Related guides

01The operational surface

One surface for posture, operations, and what needs attention next.

The Zof home is not a marketing dashboard. It is the operational surface engineering, QA, and SRE teams use every day, quality posture, in-flight runs, coverage by module, and the actions a leader should look at next.

OPERATIONAL KPIs

  • Runs
  • Coverage
  • Risk

Live across every environment you ship to.

WORK SPINE

  • Specs
  • Tests
  • Schedules

From specification to scheduled regression.

GUARDRAILS

  • RBAC
  • SSO
  • audit

Every action attributable to a named human.

STAGING · LIVE/home
Zof AI home command center showing 12 runs at 94% pass, 3 open critical issues, 84% coverage, four module traceability bars, the specification pipeline, upcoming schedules, and recommended next actions with an active-runs sidebar.
Home view · Checkout Service · Staging · captured live from the product.
  • 01 · RUNS · 24H

    94% pass

    12 runs across staging

  • 02 · COVERAGE

    84%

    Across four modules

  • 03 · ACTIVE RUNS

    3 running

    Live on this branch

  • 04 · NEXT ACTIONS

    Recommended

    Triage gaps, new spec

Secure Deployment Checklist | Zof AI