Skip to content

Hermes Platform Architecture

1. Observe What changed? β†’
2. Understand Why does it matter? β†’
3. Track How does risk evolve? β†’
4. Predict What happens next? β†’
5. Decide What to do? β†’
6. Verify What happened? β†’
7. Remember Persistent memory


Unlike legacy cybersecurity SaaS platforms that centralize and store proprietary client inventories in remote clouds:

  1. Client-Side Execution: The Hermes UI, SBOM analyzer, and risk comparator execute entirely within your browser runtime using WebAssembly and modern JavaScript.
  2. Static Pre-Compilation: All threat intelligence feeds and graph indexes are pre-compiled during deterministic Linux build stages.
  3. No Central Ingestion of Your Data: Your SBOMs, CVE matches, and configuration files never leave your workstation.

INGEST (NVD, CISA KEV, EPSS, arXiv, Git)
↓
NORMALIZE (Canonical Schema Validation)
↓
OBSERVE (Epistemic State & Confidence Vector OBS-*)
↓
GRAPH (Entity Ingestion & Relationship Matrix)
↓
TRAJECTORY (Derive R(t) & Discrete Velocity)
↓
FORECAST (Probabilistic Bounded Predictions)
↓
DECIDE (Prescriptive T0/T1 Directives)
↓
PUBLISH (Static JSON, STIX 2.1, TAXII 2.1, HTML)