# TestifySec Platform

Source: https://www.testifysec.com/docs/platform/overview

Manage products, repositories, policies, gates, evidence, and technical-control mappings in the TestifySec Platform.

The Platform manages the requirements and records behind your software gates. CI/lock supplies signed workflow evidence; Pushgate enforces the configured requirements at the Git boundary.

 

## Start with your system

 

- [Understand the data model](https://www.testifysec.com/docs/platform/data-model): products, repositories, policy releases, evidence, and decisions.
 - [Plan a private deployment](https://www.testifysec.com/docs/platform/appliance): formats, requirements, network paths, and operating responsibilities.
 - [Review identity and signing infrastructure](https://www.testifysec.com/docs/pushgate/trust-architecture): trust roots, certificates, timestamps, and discovery.

 

## Connect the products

 

Follow the [shared system architecture](https://www.testifysec.com/docs/concepts/architecture) for the end-to-end flow. Then [capture a result with CI/lock](https://www.testifysec.com/docs/cilock/getting-started/first-attestation) or [set up a repository gate](https://www.testifysec.com/docs/pushgate/setup).

 

## Understand the limits

 

A policy decision describes a bounded evaluation. It is not proof of downstream delivery or a whole-system security guarantee. Read the [trust model](https://www.testifysec.com/docs/concepts/trust-model) before choosing the producers, identities, and evidence your policy accepts.
