Claude 24f816b6a3
Consolidate 22 sibling repos into layered organism structure
Place useful parts of the surrounding repos into sica-fondt by layer, per the
body model (Ada = membrane; brain/endocrine/capabilities/knowledge non-Ada):

- brain/        LLM reasoning + providers (dapr, hermes, MoMoA)
- capabilities/ REPRAG sidecars: hermes tools/skills, dapr tools, parallel
                dispatch, A51 channels, and the OSINT cluster
- knowledge/    LORAG corpus: 754 cyber-skills, agency personas, secure-coding,
                MITRE ATT&CK data
- reference/    defensive threat-reference (C3, shhbruh doc) + AdaYaml parser

License handling: AGPL sources (worldosint, advanced_evolution, mercury,
Reticulum) and GPL DeTTECT are SPEC-only clean-room/port descriptions — no
copyleft code copied. MIT/Apache/data parts copied as working trees.

Safety: shhbruh escape/persistence material and C3 covert-C2 kept as reference
only, not wired into the running organism. See CONSOLIDATION.md.

https://claude.ai/code/session_01UehUqEXXJJCsHoA4voCU5c
2026-06-10 06:53:01 +00:00

1.7 KiB

API Reference: CyberArk Zero Standing Privilege

CyberArk PVWA REST API v2

Authentication

POST /api/auth/CyberArk/Logon
Body: {"username": "admin", "password": "pass"}
Returns: Session token string

Key Endpoints

Method Endpoint Description
GET /api/Safes List all safes
GET /api/Safes/{name}/Members List safe members and permissions
GET /api/Platforms List configured platforms
GET /api/Accounts List privileged accounts
GET /api/LiveSessions List active privileged sessions
POST /api/Accounts/{id}/CheckIn Release exclusive account access

Safe Member Permissions

Permission ZSP Implication
useAccounts Can initiate privileged sessions
retrieveAccounts Can retrieve passwords
listAccounts Can see account inventory
requestsAuthorizationLevel1 Dual-control approval required

Session Properties

Field Description
User Session initiator
AccountName Target privileged account
Duration Session length in seconds
RemoteMachine Target host

TEA Framework

Component API Field Purpose
Time MaxSessionDuration Auto-revoke after timeout
Entitlements AllowedPermissions Scoped access per session
Approvals requestsAuthorizationLevel Require approval workflow

References