A / Deployment audit
Know what
it can reach.
The environments in which frontier models are trained, evaluated, and served.
- Attack surface. What the model or agent can reach, and what can reach it.
- Isolation. Whether environments described as isolated share caches, registries, credentials, or other mutable state.
- Egress policy. Where outbound traffic is permitted to go, and whether that is enforced rather than assumed.
- Credential hygiene. Which secrets are present in the environment, who can read them, and what they unlock.
- Detection coverage. Whether anomalous internal activity generates an alert, and the expected time for a human to act on it.
- Evaluation infrastructure. Whether the systems used to test models are themselves hardened. July began inside an evaluation harness.
