# One system. Docs for each product.

Source: https://www.testifysec.com/docs

One documentation home for evidence collection, repository gates, policy, identity, technical-control evidence, and platform operation.

Documentation

Capture the work, check the requirements, and use the evidence across your repositories and technical controls.

[Find your starting point](https://www.testifysec.com/docs/start/workflows)[Understand the architecture](https://www.testifysec.com/docs/concepts/architecture)

Browse by product

## Choose your product.

![](https://www.testifysec.com/media/brand-assets/products/platform/shield-blue.svg)

### Platform

Manage gates, policies, identity and evidence.

- [Get started with the platform](https://www.testifysec.com/docs/platform)
- [Products, repositories, and policies](https://www.testifysec.com/docs/platform/data-model)
- [Appliance deployment](https://www.testifysec.com/docs/platform/appliance)
- [Policy assignments and decisions](https://www.testifysec.com/docs/pushgate/trust/policy)
- [Trust architecture and PKI](https://www.testifysec.com/docs/pushgate/trust-architecture)

![](https://www.testifysec.com/media/brand-assets/products/cilock/cilock-mark-color.svg)

### CI/lock

Capture on your compute or hosted infrastructure.

- [Get started with CI/lock](https://www.testifysec.com/docs/cilock)
- [Install CI/lock](https://www.testifysec.com/docs/cilock/getting-started/installation)
- [CLI reference](https://www.testifysec.com/docs/cilock/reference/cli)
- [Attestor reference](https://www.testifysec.com/docs/cilock/attestors)
- [Execution environments and support](https://www.testifysec.com/docs/concepts/support-matrix)

![](https://www.testifysec.com/media/brand-assets/products/pushgate/pushgate-mark-color.svg)

### Pushgate

Apply requirements at the Git push boundary.

- [Get started with Pushgate](https://www.testifysec.com/docs/pushgate)
- [Authority and approval steps](https://www.testifysec.com/docs/pushgate/ceremonies)
- [Troubleshoot a refusal](https://www.testifysec.com/docs/pushgate/common-errors)
- [Verify independently](https://www.testifysec.com/docs/pushgate/trust/verify)

What do you need to do?

## Capture your first result

Run an existing build or test with CI/lock, then inspect its signed evidence.

[Capture a result ↗](https://www.testifysec.com/docs/cilock/getting-started/first-attestation)

## Protect a repository

Connect Pushgate, understand the requirements, and inspect an accepted or refused push.

[Set up a gate ↗](https://www.testifysec.com/docs/pushgate/setup)

## Evaluate the trust boundary

See what signatures establish, what the verifier checks, and where producer trust remains necessary.

[Read the trust model ↗](https://www.testifysec.com/docs/concepts/trust-model)

## Choose a workflow

Start with code trust, technical-control evidence, or a platform deployment. Reuse the same system concepts.

[Choose your path ↗](https://www.testifysec.com/docs/start/workflows)

Before you rely on a result

## Know what each record establishes.

Keep producer identity, observed agent context, policy evaluation, gate acceptance and delivery distinct.

[Review the trust boundary](https://www.testifysec.com/docs/concepts/trust-model)
