Skip to content

docs: ASPM positioning + 6 missing capability pages#19

Open
josuanstyalovdianchel-droid wants to merge 1 commit into
mainfrom
docs/aspm-positioning-and-platform-gaps
Open

docs: ASPM positioning + 6 missing capability pages#19
josuanstyalovdianchel-droid wants to merge 1 commit into
mainfrom
docs/aspm-positioning-and-platform-gaps

Conversation

@josuanstyalovdianchel-droid

Copy link
Copy Markdown

Why this PR

Audit of docs.plexicus.ai against the current platform (~100 PRs merged on plexicus/platform in May) surfaced two issues:

  1. Brand positioning out of date — getting-started pages still call Plexicus a CNAPP. Per current GTM positioning, Plexicus is an AI-Native ASPM platform (CNAPP belongs to Wiz).
  2. Six major capabilities have no docs — features that shipped or are actively being rolled out are invisible to documentation users.

What changed

Brand fixes

  • getting-started/introduction.mdx — replaced CNAPP positioning with ASPM; added Azure DevOps, AI assistants, and current compliance list
  • getting-started/key-features.mdx — repositioned as ASPM; added AI Remediation, Pentest Agent, AI Code Security suite, Compliance sections

New pages (6)

Page Purpose
integrations/azure-devops.mdx Azure DevOps SCM connector (shipped in May 25 release)
pentest-agent/index.mdx Plexicus pentest agent setup, verified domains, scan profiles
ai-remediation/index.mdx AI fix suggestions + sandbox mode (no SCM required)
settings/sso.mdx SAML SSO + SCIM provisioning for Scale/Enterprise
compliance/index.mdx SOC 2, NIS2, DORA Art. 28, CRA, EU AI Act, EU data residency
scanners/index.mdx Scanner suite overview — OpenGrep, Semgrep, Trivy, etc. + language coverage

Sidebar updates

  • Added Azure DevOps under SCM Integrations
  • New top-level Security Capabilities category (Scanners, Pentest Agent, AI Remediation)
  • New top-level Compliance category
  • Added SSO under Settings

Brand-rules compliance

All new and edited copy uses ASPM positioning. The pentest feature is documented as "Plexicus pentest agent" (never the internal codename). Deep code analysis is referred to as "Deep Analysis" / "deep semantic code analysis" — no Joern/CPG references.

Before merge — content owner review

The new pages are written from current platform behavior and GTM positioning, but specific details may need product-team verification:

  • Pentest agent scan profile names (Light / Standard / Deep) — confirm with platform team
  • AI Remediation throttle defaults (5 PRs/repo/day) — confirm
  • SCIM Plexicus role names (Admin / Cyberoper / Developer) — confirm exact strings
  • Compliance framework availability — confirm which are "Available" vs "Pathway"
  • Scanner language coverage table — verify against actual processor support
  • Add screenshots where existing pages have them (Azure DevOps connector UI, etc.)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant