Documentation
Every page you need.
Indexed by what you're trying to do.
CyberCLI's docs are organized around three questions: How do I start?, How do I connect what I already have?, and What is this product actually doing? Pick a section.
Get started
From curl|sh to your first verified detection.
The day-one path. Install, configure, see your first signal.
Five-section recipes — install, connect Wazuh, CYCON-aware Slack routing, suppression rules, local Ollama lane.
macOS, Linux, Windows. Signed end-to-end.
How CyberCLI is built. The Trust Ladder, license model, audit chain.
Connect your stack
Wire CyberCLI to the systems you already run.
Understand the product
The doctrine + the math.
8 calibrated levels of AI autonomy. The leash, the gate, the receipts.
22 in-instance roles + Sovereign federation. Each role's charter.
Every one of CyberCLI's 27 deterministic engine subsystems, page by page. What it does, why you care, how it works, configure & observe, status.
An incident, end to end, from probe to closed case.
Why Free is free, why Founder Pro is locked for life.
Estimate your monthly AI spend before you commit.
Operate
Daily ops, troubleshooting, security disclosures.
When something doesn't work
Four paths back to working.
Next