Skip to content

Cloud

Cloud security

Isolation, revision binding, bounded assessment and evidence controls in Cortex Cloud.

Cortex Cloud keeps work within the authenticated organization and approved workspace scope. It can assess source and dependencies, run eligible build and test tasks, and verify an application in an isolated Cloud environment.

Runtime security assessment is limited to the approved target. Available checks can include application discovery, passive analysis, selected HTTP checks and API-example coverage. Cortex presents related findings together for review.

  • Review every handoff and destructive or consequential action.
  • Keep repository and connector credentials in the managed credential path.
  • Verify that evidence matches the intended source revision before approval.
  • Clean up eligible Cloud workspaces when the task is complete.
  • Treat exported artifacts as private organization data.

Cloud execution cannot widen tenant policy, client trust settings or repository authorization.