CONFIRMED
Direct representative evidence supports the stated condition.
Security methodology
LumicSec is a Website Security Operations product. It discovers public exposure safely, preserves evidence, prioritizes remediation, and uses later representative evidence to prove what changed. Missing evidence never becomes a security pass.
Current V1 scope
Standard Review uses authorized, non-destructive public checks. Current deeper review remains bounded to same-origin public discovery and passive GET/HEAD observation after ownership or explicit authorization is confirmed.
Evidence confidence
CONFIRMED
Direct representative evidence supports the stated condition.
EVIDENCE-BACKED
Multiple observed signals support the conclusion without overstating certainty.
REVIEW SIGNAL
A condition deserves attention but needs additional validation before a stronger claim.
INCONCLUSIVE
Representative evidence was unavailable or insufficient; LumicSec withholds unsupported certainty.
NOT ASSESSED
The review did not evaluate this surface or control.
Severity framework
Evidence indicates an urgent security condition with potentially severe impact. Prioritize immediate review and remediation.
A significant security weakness or exposure is supported by evidence and should be prioritized quickly.
A meaningful weakness is present but generally carries lower urgency than High or Critical findings.
A lower-impact hardening opportunity or limited-risk condition was observed.
Context or security hygiene information that is useful but is not presented as a vulnerability.
Retest authority
Verified Fixed requires a later authorized Retest, compatible finding identity and new representative evidence on the same tenant and asset. Retest outcomes remain explicit: