Specification Browser

202 items across 6 document types — generated 2026-03-15

UIDTitleTypeImportanceUrgencyVmReleaseActiveParent links
MRS-001Semantic data modelA55RAlphaactive
MRS-010Removal of expired intelligenceF31TFIDactive
MRS-011Ingestion of CTI in a standard formatF55TAlphaactive
MRS-012CyFORT CTI repositoryF54RAlphaactive
MRS-013OSINT ingestionF54IFIDactive
MRS-014Automated CTI enrichmentF54TAlphaactive
MRS-015Semantic relations preservationA55RAlphaactive
MRS-016Configuration managementF53TAlphaactive
MRS-017Conformance with user settingsF55TAlphaactive
MRS-018Automated reasoningA55RAlphaactive
MRS-019Exporting inferred CTIF54TBetaactive
MRS-002CTI knowledge baseA55RAlphaactive
MRS-020Interactive frontendF55TAlphaactive
MRS-021Self-defined CTI queriesF55TFIDactive
MRS-022Storage of CTI investigationsF55TAlphaactive
MRS-023Query parameterizationF55TAlphaactive
MRS-024CTI analysisA55RAlphaactive
MRS-025SATRAP-DL serviceF55TAlphaactive
MRS-026Query result viewerF55TAlphaactive
MRS-027Frontend query statusF55TAlphaactive
MRS-028Native query executionF55TAlphaactive
MRS-029Frontend designC55IAlphaactive
MRS-003CTI SKB extensibilityA55RAlphaactive
MRS-030Frontend terminologyI55IFIDactive
MRS-031Frontend STIX complianceC55IFIDactive
MRS-032User-controlled CTI curationF32TAlphaactive
MRS-033File-based SKB updateF32TAlphaactive
MRS-034Frontend cross-platform supportA55TAlphaactive
MRS-037SATRAP as software libraryA43IAlphaactive
MRS-039CTI SKB content: from IDPS-ESCAPEF43TBetaactive
MRS-040CTI SKB content: organizational CTIF44TBetaactive
MRS-041CTI SKB content: system blueprintF54TBetaactive
MRS-042CyFORT CTI continuous analysisF42TBetaactive
MRS-004SKB data model flexibilityA55R,TAlphaactive
MRS-043CyFORT CTI repository enrichment connectorF42TBetaactive
MRS-005CTI SKB content: public CTI knowledgeQ55RAlphaactive
MRS-006Domain-specific CTIQ33R,IFIDactive
MRS-007Semantic CTI and MITRE D3FENDQ33R,IFIDactive
MRS-008CTI SKB data integrityQ55RAlphaactive
MRS-009Policy-driven automated SKB updateF44RFIDactive
MRS-035Integration with open-source tools for incident handlingF45TBetaactive
MRS-058Automated alert triage and case escalation guided by CTIF55TBetaactive
MRS-059Standalone incident escalation from an externally-computed triage scoreF45TAlphaactive
MRS-060Multi-scenario threat coverage and extensibilityF44TBetaactive
MRS-038Platform-independent APIF52TBeta, FIDactive
MRS-044Modular architectureA55RAlphaactive
MRS-045STIX complianceC55TAlphaactive
MRS-046C5-DEC complianceC55IAlphaactive
MRS-051Open-source releasesQ55IAlphaactive
MRS-053Secure programming complianceC55I, RAlphaactive
MRS-056Access controlS42TBetaactive
MRS-057Secure channels to the CyFORT ecosystemS52TFIDactive
MRS-SATRAPSATRAPactive
MRS-DECIPHERDECIPHERactive
MRS-NFunNon-functional requirementsactive
UIDTitleTypeImportanceUrgencyVmReleaseActiveParent links
SRS-001Data modelling languageA5RAlphaactiveMRS-001 MRS-015
SRS-010Database managerA5RAlphaactiveMRS-011
SRS-011Ingestion of organizational CTIF44TBetaactiveMRS-040
SRS-012Inference rulesF4AAlphaactiveMRS-014
SRS-013STIX 2.1 data modelA5AAlphaactiveMRS-015
SRS-014Native reasoning engineA5R, IAlphaactiveMRS-018
SRS-015Jupyter Notebook frontendF3TAlphaactiveMRS-020 MRS-022 MRS-023 MRS-025 MRS-026 MRS-027 MRS-029 MRS-034
SRS-017Integration of behavioral dataF43TBetaactiveMRS-039
SRS-018Automated CTI analysisF42TBetaactiveMRS-042
SRS-019CTI export to STIX 2.1F54TBetaactiveMRS-019
SRS-020System configuration fileQ3IAlphaactiveMRS-044
SRS-002Database paradigmA5RAlphaactiveMRS-002 MRS-015
SRS-023CTI representation in STIX 2.1C5R, IAlphaactiveMRS-045
SRS-033Functional ETL events loggingF3TAlphaactiveMRS-053
SRS-034Detailed event loggingS3TBetaactiveMRS-053
SRS-035Consistent logging formatC1TFIDactiveMRS-053
SRS-039TypeQL to STIX 2.1 transformerF54T,IBetaactiveMRS-019
SRS-041Configuration management mechanismF2IAlphaactiveMRS-016 MRS-017
SRS-042Command line interface (CLI)F5TAlphaactiveMRS-020 MRS-033 MRS-034
SRS-043TypeDB StudioF5TAlphaactiveMRS-020 MRS-028 MRS-029 MRS-032
SRS-044Open-source TIP integrationA5RAlphaactiveMRS-012 MRS-039
SRS-045CTI analysis engineA55R,IAlphaactiveMRS-024
SRS-003Semantic searchA5RAlphaactiveMRS-002
SRS-046CTI analysis toolboxF,A55T,RAlphaactiveMRS-023 MRS-025 MRS-037
SRS-047OSINT feeds configuration and catalogF42R,IFIDactiveMRS-013
SRS-004Extensibility of the data modelA5RAlphaactiveMRS-003
SRS-005NoSQL data modelA5RAlphaactiveMRS-004
SRS-006Integration of common CTIF5TAlphaactiveMRS-005
SRS-007Semantic data integrityS5RAlphaactiveMRS-008
SRS-008ETL subsystemA5RAlphaactiveMRS-011
SRS-009ETL TransformerA5RAlphaactiveMRS-011
SRS-048DECIPHER infrastructure stack: deploymentF55TBetaactiveMRS-035
SRS-056Extensible analyzer frameworkA45IBetaactiveMRS-060
SRS-049DECIPHER REST service and APIF55TBetaactiveMRS-035 MRS-038 MRS-058 MRS-059
SRS-050DECIPHER service: analysis endpointF55TBetaactiveMRS-035 MRS-058
SRS-052Analysis endpoint: IOC search in MISP for CTI enrichmentF55TBetaactiveMRS-035 MRS-058
SRS-053Analysis endpoint: CTI-driven scoring engine for MISPF55TBetaactiveMRS-058
SRS-054Analysis endpoint: optional creation of prioritized caseF43TBetaactiveMRS-035 MRS-058
SRS-055DECIPHER service: incidents endpointF45TBetaactiveMRS-035 MRS-038 MRS-059
SRS-057Runtime-configurable DECIPHER featuresF54TBetaactiveMRS-058 MRS-059
SRS-051Supported analysis for threat scenario: suspicious loginF44TBetaactiveMRS-035 MRS-038 MRS-058 MRS-060
SRS-021Centralized loggingQ2IAllactiveMRS-044
SRS-031Code static analysisS53I, AFIDactiveMRS-053
SRS-032Dependencies managementS5IFIDactiveMRS-053
SRS-036Log validationS4IFIDactiveMRS-053
SRS-037Sensitive informationS5IAlphaactiveMRS-053
SRS-038Software identificationF,S3TAllactiveMRS-053
SRS-040Authentication and authorizationS, A43IBetaactiveMRS-056
SRS-058Encrypted data transport for external service connectionsS43IAllactiveMRS-057
SRS-016API based on OASC2RFIDactiveMRS-038
SRS-022Centralized exception handlingQ5IAllactiveMRS-044
SRS-024Design and implementation principlesA, S, Q5RAlphaactiveMRS-044 MRS-046
SRS-025Code readabilityQ5IAllactiveMRS-046
SRS-026Public releaseC3IAllactiveMRS-051
SRS-027Open-source licensingC3AAllactiveMRS-051
SRS-028Input validationS5IFIDactiveMRS-053
SRS-029Input sanitizationS5IFIDactiveMRS-053
SRS-030Resource managementS5IAllactiveMRS-053
SRS-SATRAPSATRAPactive
SRS-DECIPHERDECIPHERactive
SRS-NFunNon-functional requirementsactive
UIDTitleActiveParent links
ARC-001SATRAP: System structure overviewactiveSRS-001 SRS-002 SRS-008 SRS-010 SRS-011 SRS-012 SRS-014 SRS-015 SRS-017 SRS-045 SRS-046
ARC-002Logical view of SATRAPactiveSRS-001 SRS-002 SRS-008 SRS-010 SRS-011 SRS-014 SRS-015 SRS-017 SRS-045 SRS-046
ARC-003ETL high-level designactiveSRS-006 SRS-008 SRS-009 SRS-010 SRS-011 SRS-013 SRS-020 SRS-023 SRS-024 SRS-028 SRS-029
ARC-004ETL componentsactiveSRS-001 SRS-002 SRS-005 SRS-006 SRS-008 SRS-009 SRS-010 SRS-013 SRS-020 SRS-023 SRS-024 SRS-028 SRS-029
ARC-005DECIPHER context diagramactiveSRS-048 SRS-049
ARC-006DECIPHER infrastructure deployment diagramactiveSRS-048 SRS-058
ARC-007RADAR-DECIPHER pipeline overviewactiveSRS-050
ARC-008DECIPHER microservice container diagramactiveSRS-049 SRS-056 SRS-057
ARC-009REST service: analysis endpoint interactionactiveSRS-052 SRS-054 SRS-056
ARC-010Analysis endpoint: scoring data flow diagramactiveSRS-053
ARC-012Analysis endpoint: support for suspicious loginactiveSRS-051
ARC-011REST service: incident endpoint interactionactiveSRS-055
ARC-SATRAPSATRAPactive
ARC-DECIPHERDECIPHERactive
UIDTitleActiveParent links
SWD-001Top-level ETL designactiveARC-001 ARC-002 ARC-003 ARC-004
SWD-002STIX-specific ETL designactiveARC-003 ARC-004
SWD-003ETL system flowactiveARC-003 ARC-004
SWD-004TypeDB utilitiesactiveARC-003 ARC-004
SWD-005Transformer class diagramactiveARC-003 ARC-004
SWD-006Transformer flowactiveARC-003 ARC-004
SWD-007ETL full class diagramactiveARC-003 ARC-004
SWD-011DECIPHER REST service component diagramactiveARC-008
SWD-012Analysis layer class diagramactiveARC-008
SWD-008Analysis endpoint flowactiveARC-009
SWD-010Analysis endpoint: `suspicious_login` request flowactiveARC-012
SWD-013Incident endpoint class diagramactiveARC-008
SWD-009Incident endpoint flowactiveARC-011
SWD-014DECIPHER microservice data modelactiveARC-008 ARC-010
SWD-SATRAPSATRAPactive
SWD-DECIPHERDECIPHERactive
UIDTitlePlatformPreconditionExecution typeVerification methodReleaseComplexityTest dataVersionActiveParent links
TST-001Verify data modelling artifactsGNU/Linux (Dockerized SATRAP deployment environment)ManualReview of design (R)alpha1see referenced files0.1activeSRS-001 SRS-002 SRS-003 SRS-004 SRS-005
TST-010Verify CTI SKB inference rulesGNU/Linux (Dockerized SATRAP deployment environment)ManualAnalysis (A)alpha5see referenced files0.1activeSRS-012
TST-011Test Jupyter notebook frontendGNU/Linux (Dockerized SATRAP deployment environment)ManualTest (T)alpha2see referenced files0.1activeSRS-015
TST-012Test ETL loggingGNU/Linux (Dockerized SATRAP deployment environment)ManualTest (T)alpha2see referenced files0.1activeSRS-033
TST-013Inspect settings for CMGNU/Linux (Dockerized SATRAP deployment environment)ManualInspection (I)alpha2see referenced files0.1activeSRS-041
TST-014Test command line interface (CLI)GNU/Linux (Dockerized SATRAP deployment environment)ManualTest (T)alpha2see referenced files0.1activeSRS-042
TST-017Verify open-source TIP integrationN/AManualReview of design (R)alpha1see referenced files0.1activeSRS-044
TST-018Verify release and licensingN/AManualInspection (I)alpha1see referenced files0.1activeSRS-026 SRS-027
TST-019Verify layered architecture of SATRAPN/AManualReview of design (R), Inspection (I)alpha2N/A0.1activeSRS-015 SRS-045 SRS-046
TST-020Verify enforcement of semantic data integrityN/AManualReview of design (R), Analysis(A)alpha4N/A0.1activeSRS-007
TST-002Verify software engineering practicesGNU/Linux (Dockerized SATRAP deployment environment)ManualReview of design (R)alpha3see referenced files0.1activeSRS-024
TST-003Verify STIX and reasoning engineGNU/Linux (Dockerized SATRAP deployment environment)ManualReview of design (R), Inspection (I)alpha1see referenced files0.1activeSRS-014 SRS-023
TST-004Verify STIX 2.1-based data modelGNU/Linux (Dockerized SATRAP deployment environment)ManualAnalysis (A)alpha5see referenced files0.1activeSRS-013
TST-005Verify centralized managementGNU/Linux (Dockerized SATRAP deployment environment)ManualInspection (I)alpha2see referenced files0.1activeSRS-020 SRS-021 SRS-022
TST-006Verify code clarityGNU/Linux (Dockerized SATRAP deployment environment)ManualInspection (I)alpha3see referenced files0.1activeSRS-025
TST-007Verify secure programmingGNU/Linux (Dockerized SATRAP deployment environment)ManualInspection (I), Review of design (R)alpha3see referenced files0.1activeSRS-028 SRS-029 SRS-030 SRS-032 SRS-036 SRS-037
TST-008Test setup + MITRE ATT&CK ingestionGNU/Linux (Dockerized SATRAP deployment environment)ManualTest (T)alpha2see referenced files0.1activeSRS-006 SRS-043
TST-009Verify ETL architectureGNU/Linux (Dockerized SATRAP deployment environment)ManualReview of design (R)alpha2see referenced files0.1activeSRS-008 SRS-009 SRS-010
TST-021Test containerized deploymentGNU/Linux distribution or any platform with a bash shellManualTest (T)Beta2N/A0.4activeSRS-048
TST-022Test DECIPHER REST service and APIGNU/LinuxManualTest (T)Beta2N/A0.4activeSRS-049
TST-028Test analysis endpoint core behaviorGNU/LinuxManualTest (T)Beta3N/A0.4activeSRS-050 SRS-057
TST-023Test full workflow of analysis endpointGNU/Linux, MISP, FlowintelManualTest (T)Beta4tests/decipher/integration/events_simulator.py0.4activeSRS-051 SRS-052 SRS-054
TST-024Test runtime-configurable DECIPHER featuresGNU/LinuxManualTest (T)Beta3see referenced files0.4activeSRS-053 SRS-057
TST-026Test analysis endpoint graceful degradationGNU/LinuxManualTest (T)Beta4tests/decipher/integration/events_simulator.py0.4activeSRS-051 SRS-052 SRS-054
TST-025Test incidents endpointGNU/LinuxManualTest (T)Beta3see referenced files0.4activeSRS-055
TST-027Test extensible analyzer frameworkAnyManualInspection (I)Beta5see referenced files0.4activeSRS-056
TST-SATRAPSATRAP validation test specificationsactive
TST-DECIPHERDECIPHER validation test specificationsactive
UIDTitleTest dateTesterDefect categoryPassed stepsFailed stepsNot executed stepsRelease versionVerification methodActiveParent links
TRP-001TCER: modelling2025-03-25AAT0 — flawless2000.1RactiveTST-001
TRP-010TCER: CTI SKB inference2025-03-27AAT0 — flawless1000.1AactiveTST-010
TRP-011TCER: Jupyter Notebook frontend2025-03-27AAT0 — flawless4000.1TactiveTST-011
TRP-012TCER: ETL logging2025-03-29AAT0 — flawless1000.1TactiveTST-012
TRP-013TCER: CM settings2025-03-28AAT0 — flawless4000.1IactiveTST-013
TRP-014TCER: SATRAP CLI2025-03-28AAT0 — flawless6000.1TactiveTST-014
TRP-015TCER: Open-source TIP adoption2025-03-28AAT0 — flawless1000.1RactiveTST-017
TRP-016TCER: release + licensing2025-03-28AAT0 — flawless2000.1IactiveTST-018
TRP-017TCER: SATRAP architecture2025-09-03IVS0 — flawless3000.1R,IactiveTST-019
TRP-018TCER: Semantic data integrity2025-09-03IVS0 — flawless1000.1R,AactiveTST-020
TRP-002TCER: SW engineering2025-03-25AAT1 — insignificant2000.1RactiveTST-002
TRP-003TCER: STIX and reasoning2025-03-25AAT0 — flawless2000.1R,IactiveTST-003
TRP-004TCER: data model2025-03-25AAT1 — insignificant1000.1AactiveTST-004
TRP-005TCER: centralized management2025-03-26AAT0 — flawless5000.1IactiveTST-005
TRP-006TCER: code clarity2025-03-26AAT0 — flawless1000.1IactiveTST-006
TRP-007TCER: secure programming2025-03-26AAT2 — minor5200.1I,RactiveTST-007
TRP-008TCER: MITRE ATT&CK ingestion2025-03-27AAT0 — flawless2000.1TactiveTST-008
TRP-009TCER: ETL architecture2025-03-27AAT0 — flawless3000.1RactiveTST-009
TRP-019Test containerized deployment2026-03-12DMA0 — flawless7000.4TactiveTST-021
TRP-020Test DECIPHER REST service and API2026-03-12DMA0 — flawless6000.4TactiveTST-022
TRP-021Test analysis endpoint core behavior2026-03-12DMA0 — flawless7000.4TactiveTST-028
TRP-022Test full workflow of analysis endpoint2026-03-12DMA0 — flawless7000.4TactiveTST-023
TRP-023Test runtime-configurable DECIPHER features2026-03-12DMA0 — flawless5000.4TactiveTST-024
TRP-024Test analysis endpoint graceful degradation2026-03-12DMA0 — flawless4000.4TactiveTST-026
TRP-025Test incidents endpoint2026-03-12DMA0 — flawless5000.4TactiveTST-025
TRP-026TCER: extensible analyzer framework2026-03-12AAT0 — flawless7000.4IactiveTST-027
TRP-SATRAPSATRAPactive
TRP-DECIPHERDECIPHERactive