Glossary

Key terms used across the Maximus platform.

Application route

Sidebar

Reference → Glossary

RolesAll
TermDefinition
EngagementScoped penetration test effort with targets, findings, and canvas
FindingDocumented vulnerability with severity, evidence, and remediation state
ScanAutomated tool run (nmap, nuclei, etc.) against engagement targets
CanvasInteractive diagram — defensive (threat modeler) or adversarial (pentest)
MaximusIn-product AI assistant with platform tool access
MCPModel Context Protocol — IDE integration standard
ArsenalCatalog of runnable security tools
Report StudioAI-assisted narrative editor for pentest deliverables
Organization (org)Isolated tenant — users, data, credentials, settings
Platform AdminCross-org administrator who can create tenants
STRIDESpoofing, Tampering, Repudiation, Info disclosure, DoS, Elevation — web threat methodology
MAESTROAI/agentic threat modeling methodology with KC layers
PMRead-only stakeholder role
SMESubject matter expert / operator role
Proof stateAdversarial testing status on canvas nodes
Kill chainAttack path from entry point to objective
Trust zoneBoundary grouping components by trust level (trusted / semi-trusted / untrusted)