Reachability Witnessing

Status: Implemented Owner shell: Security > Reachability Canonical routes: /security/reachability/coverage, /security/reachability/witnesses, /security/reachability/witnesses/:witnessId, /security/reachability/poe, /security/reachability/poe/:artifactId, /security/reachability/gaps

Recommendation

Restore witness and proof-of-exposure UX as a deeper part of Security > Reachability, not as a standalone product.

This capability should strengthen security investigation, release gating, and evidence review through reusable witness detail pages and proof drawers.

Why This Is The Right Shape

Operator Modes

1. Coverage Review Mode

2. Investigation Mode

3. Release Context Mode

Primary tabs

Witness detail sections

Page Anatomy

Coverage tab

Witnesses tab

PoE / Exposure tab

Sensor Gaps tab

Route Contract

Keep one canonical route family under security reachability.

Canonical routes

Query-param state

Alias rules

What To Merge

Merge into Coverage

Merge into Witnesses

Merge into PoE / Exposure

Preserve as shared behaviors

Single Actions And Supporting Surfaces

Witness detail

PoE detail

Export or replay verify

Cross-Product Entry Points

Shipped Behavior

Mounted shell

Witness detail

Proof-of-exposure detail

Cross-product handoffs

UI Standards For Implementation

Verification Status

Non-Goals

Source Inputs