Owner-controlled defensive surface
Audit machines you control.
EV3 Audit is separate from public EV3 discovery. Ownership and an explicit short-lived scope are required before an assessment can be prepared. The Dant3 server does not scan arbitrary third-party targets.
Verified assets
Active scopes
Accepted runs
Open findings
Your Dant3 machines
Ownership-backed assets
Exact Dant3 ownership can verify a machine without a separate network challenge. Enrollment still requires the independent EV3 Audit release gate to be open.
Least-authority scope
Create a bounded scope
A scope never allows private-network scanning, credential testing, authentication bypass, MCP tool execution, vector-data reads, command publication or physical actuation.
Ownership proof only
External hostname verification challenge
This prepares proof material only. EV3 Audit v1 does not fetch the hostname, resolve private addresses, or mark an external asset verified. External hostname verification remains pending until a separately reviewed verifier exists.
Ownership first
A public service being reachable never authorizes security testing. Dant3 ownership or separately verified external ownership is required.
Least authority
EV3 Audit v1 is posture and topology oriented. Credentials, private content, tool execution and Robot control are outside the evidence contract.
Owner-side runner
The planned local runner performs only the approved profile inside your environment and returns bounded structured evidence. The web service does not become a general scanner.
Schema: not activated. Plan: free. Server target probing: unknown. External hostname verification: pending-only in v1.