Documentation

Varydn Docs

Reference material for migration planning, scoped engagements, product behavior, and deployment decisions.

Migration Brief

FIPS 140-3 Migration Brief

High-level overview of the migration offer, scoped deliverables, phased pricing, timeline, and who it is for.

  • Overview of Varydn's migration approach
  • Deliverables and timeline
  • One-time and phased pricing
  • Fit for architects, compliance, and platform teams
Engagement Guide

FIPS 140-3 Migration SOW Guide

Structured delivery, acceptance, payment, and change-control guidance for a scoped FIPS migration engagement.

  • Objectives and project scope
  • Deliverables with acceptance criteria
  • Timeline and payment schedule
  • Change control and client responsibilities

Product Documentation

Implementation-level references for how the platform fits into engineering workflows.

Product

Scanner Implementation Guide

Repository rollout, coverage design, operating model, and scan output guidance for engineering teams.

Policy

CI Enforcement Implementation Guide

Merge-gate rollout, threshold design, exemptions, and policy governance guidance.

Runtime

Runtime Verification Implementation Guide

Baseline design, drift monitoring, evidence retention, and operational rollout guidance.

Deployment

Deployment And Onboarding Guide

Cloud-hosted versus private deployment, onboarding sequence, and operational ownership planning.

Technical Reference

Low-level architecture, integration, policy, runtime, and compliance references for technical operators.

Architecture

Platform Architecture Reference

Component boundaries, data flows, trust boundaries, and degradation behavior.

Open Reference
Integration

GitHub And CI Integration Reference

Required permissions, event triggers, CI status semantics, and failure handling.

Open Reference
Policy

Policy Configuration Reference

Threshold levels, inheritance model, precedence order, and exemption rules.

Open Reference
Detection

Detection Rule Reference

Rule families, confidence semantics, priority guidance, and known limitations.

Open Reference
Runtime

Runtime Signal Reference

Signal taxonomy, drift classes, evidence expectations, and alert routing guidance.

Open Reference
Compliance

Security And Compliance Reference

Data classes, retention posture, control mapping guidance, and security considerations.

Open Reference