Maximus Overview
Maximus combines defensive threat modeling and offensive penetration testing in one multi-tenant platform.
Application route
—Sidebar
Welcome → Overview
RolesPMSMEAdminPlatform Admin
Maximus — Agentic Penetration Testing Platform. Maximus combines defensive threat modeling and offensive penetration testing in one multi-tenant platform.
Two primary workspaces
| Workspace | User persona | Core artifact |
|---|---|---|
| Threat Modeler | Architect, AppSec engineer | Data-flow diagram + threat lifecycle |
| Adversarial Pentest | Pen tester, red team | Engagement + kill chain + proof state |
What you can do
- Model systems on a threat modeler canvas (STRIDE or MAESTRO methodology).
- Run penetration test engagements with automated scans, findings tracking, and an adversarial attack canvas.
- Work with Maximus, the in-product AI assistant with live canvas and engagement context.
- Produce reports with AI-assisted narrative authoring and optional electronic signatures.
- Monitor risk posture, compliance mappings, and brand impersonation (domain protection).
- Connect IDEs and CLIs via MCP for tester workflows in Cursor, Claude Desktop, or Copilot CLI.
Lifecycle states
Proof states (pentest canvas): untested → probed → proven → disproven → exploited → chained → contained. Threat lifecycle (modeler): identified → mitigated → accepted → residual.