Capability
Detection & Response
Tie detection and response work to proof-backed closure and business impact.
Discuss design-partner laneIntegration/control planePublic / catalog-only
What VALTY owns
Incidents, threat intelligence, remediation queue, validation, closure evidence. VALTY owns the proof/remediation layer, source coverage, buyer workflow, and visible business impact for this lane.
What remains customer-owned
VALTY integrates and validates; it does not claim to own response execution by default.
Buyer path
SOC, CISO should route through `/access` with source page and requested wedge preserved in Attio.

Proof matrix
Capability proof requirements
Each capability page keeps the claim, source, confidence, and publication boundary visible before it asks a buyer to believe the outcome.
ClaimSourceConfidenceFreshness
Capability claimIncidents, threat intelligence, remediation queue, validation, closure evidenceIntegration/control planePublic / catalog-only
Evidence artifactIncident-to-proof trail and response validation summarySource-linkedReviewed before publish
BoundaryVALTY integrates and validates; it does not claim to own response execution by default.Claim-reviewedQuarterly or on product change