Skip to content

mizcausevic-dev/cyberark-access-certification-mesh

Repository files navigation

CyberArk Access Certification Mesh

License: AGPL v3 CI Status: v1.0-prod Static · No backend · No telemetry

Operator surface for CyberArk PAM safe certifications, anomaly detection, and ServiceNow access-review ticket sync.

Single-page operator surface served as static HTML — no backend, no login, no telemetry. Synthetic data only. Part of the Kinetic Gain operator-surface lane.

Live

https://cert.kineticgain.com/

What this is

This is IAM / Privileged Access Governance — a buyer-facing operator dashboard that demonstrates the shape of a runtime governance system for cyberark access certification mesh without exposing any live tenant data. Synthetic data lets prospects and reviewers explore the workflow end-to-end before they ever connect a real source.

Buyer

CyberArk admins · Compliance teams running quarterly PAM access reviews · Audit committees

Regulatory anchors

SOX ITGC · PCI DSS 4.0 (Req 7 + 8) · NIST 800-53 AC-2/AC-5/AC-6 · CIS Controls v8 Control 5/6 · ISO 27001 A.9 · NYDFS Part 500.7

Canonical example

The page is pre-loaded with synthetic data modeled on Continental Banking & Trust (DIB Tier 1 financial services) — a realistic operator scenario so the workflow looks like production from first paint. Browser-only; nothing leaves the tab.

Status

v1.0-prod — hardened 2026-06-02. CI green on Node 20+22, 15 structure + data-integrity tests passing, HTML5-validated, security headers verified in .htaccess. See .release-notes.md.

Static only

  • No backend. No database. No login. No telemetry.
  • Synthetic data is baked into the HTML as JavaScript constants.
  • All filtering, sorting, audit-chain rendering happens client-side.
  • Hostinger native git pull deploy via FTP-Deploy-Action.

Language posture

Per the Kinetic Gain public-language guardrail across HIPAA · FERPA · SOC 2 · GDPR · ISO 27001 · NIST AI RMF · EU AI Act · ISO 42001: this surface frames as readiness / evidence / posture / controls / scaffolding — never "compliant" or "certified" unless an external audit is currently attested and in scope.

License

AGPL-3.0. The KG Suite specs that compose with this surface (Decision Card v0.3 vault contract, AI Incident Card, AI Evidence Format, audit-stream) are MIT — see github.com/mizcausevic-dev/kinetic-gain-protocol-suite.

See also

Author

Miz Causevic · Boston · github.com/mizcausevic-dev · linkedin.com/in/mirzacausevic

About

Operator surface for CyberArk PAM safe certifications, anomaly detection, and ServiceNow access-review ticket sync. Browser-only, no telemetry. AGPL-3.0.

Topics

Resources

License

Stars

Watchers

Forks

Packages

 
 
 

Contributors