Armalo pillar · Series A+ / regulated
Run continuous attack-surface monitoring and evidence intelligence against the customer's own production.
Buyer: VP Eng / CISO
Honestly blocked
the cyber pillar ships as a design-partner maturity (the upstream /security chain runner is not yet promoted to the full CATALOGUE_KIT_REGISTRY; the narrower packages/product-kits/src/guardian/ kit is in this repo with stub maturity per docs/strategy/2026-08-03-hermes-agents-five-vertical-unification.md §9). The pillar page shows the honestly-blocked panel until a real runner is wired.
We list the pillar here because the customer pain is real and the unification is real, but the page is not a marketing promise — it’s the honest status.
The three numbers for Hermes Guardian
vulns surfaced in the customer's own repos and infra
vulns patched or formally triaged within the SLA window
audit-ready evidence + avoided incident cost reduced versus the manual baseline
Hero metric
Vulns patched within SLA
Unit: % · Source: vulns found by the BAS chain runner / vulns remediated within the policy window
What installs
Safety rails
Hermes Guardian requires these launch gates to clear before it can take live autonomous action:
The other four pillars
Hermes Engineer
Ship and safely operate real production software from the shared company workspace, not a throwaway scaffold.
Hermes Growth
Produce, qualify, and follow up on real demand with claims/rights review and human approval before any spend or send.
Hermes Concierge
Answer, resolve, and escalate customer demand across email, WhatsApp, and voice with a human-in-loop handoff.
Hermes Auditor
Run the 9-agent compliance department against the customer's own framework obligations, evidence-tracked.