Claim discipline and disclosure

01 · TECHNICAL TRUTH AND CLAIM DISCIPLINE

What is available now, what depends on a deployment, what is shared under NDA, and what is restricted.

OHIIHO distinguishes between what is available now, what depends on a deployment, what is discussed under NDA and what is restricted. A running process is not treated as proof that a complete signal path works. Public claims are limited to capabilities that can be supported by current product behavior or public Research.

StatusMeaning
Availablesupported in the current commercial product under stated conditions
Deployment-specificavailable only for selected target types, regions, integrations or engagement terms
NDA detailreal detail that should not be published broadly
Restrictedpremium counterintelligence capabilities for eligible government and national-security agencies, discussed on request
Not claimedfuture, unverified or intentionally excluded
Where delivery stands
What we say today — and what we do not

What we say today — HIIH produces structured Findings linked to supporting observations. The Console, MCP and API pull paths carry a Finding’s identity, so it stays the same object across them; STIX 2.1 over TAXII 2.1 is available by engagement. The Access Finding family is live and inspectable in the Console.

What we do not say today — We do not claim cryptographically sealed evidence, identical output across every format, or general availability of every target type.

02 · WHAT HIIH DOES NOT CLAIM TODAY

Naming the limits up front makes evaluation faster.

Not a compliance certification
HIIH can support security operations; it does not make an organization compliant with any standard or regulation.
Not a universal digital twin
A Surface is a controlled engagement environment, not a complete replica of the customer estate.
Not a guarantee of targeted activity
Public exposure may observe Internet-wide or sector-relevant behavior. Relevance is assessed, not assumed.
Not an offensive service
HIIH operates only within authorized target-side environments.
Not sealed evidence today
Findings link to supporting observations and artifacts. Sealed or signed evidence is not offered today.
Not a replacement for your stack
HIIH adds an adversary-facing source alongside EDR, SIEM, XDR and CTI — it does not replace them.
Current public scope
Scope and limits
HIIH publicly claims controlled adversary engagement, Live Host and Contact Point engagement, structured Findings and selected workflow delivery. It does not claim tamper-evident, signed, self-verifying or independently verifiable evidence, general availability of every target type, or a full digital twin of your estate. These are stated plainly so that evaluation begins from the truth.
03 · PUBLIC, NDA AND RESTRICTED DISCLOSURE

More detail is not always more trust.

Some detail allows an evaluator to make a sound decision; other detail creates security, legal or operational risk. OHIIHO uses layered disclosure so that each audience receives the information required for its decision under the appropriate controls.

LayerWhat it contains
Publicproduct model, target classes, outputs, boundaries, public Research
NDA technical diligencearchitecture detail, conditions, sample evidence, data handling, service model, current limitations
Restrictedheld outside public and NDA diligence, as defined in the first table above

Security disclosure