PLUMBLINE
Configuration Baseline & Drift Analyzer
FI-XXXv2.6.0LOCAL ANALYSIS ONLY
SAVED

Configuration drift at a glance

Import evidence, compare it, investigate meaningful drift, then document conclusions.

0
TOTAL CHANGES
0
REQUIRE REVIEW
0
SECURITY-RELATED
0
DRIFT SCORE / 100
NO DATA
BASELINE STATUS

WHAT CHANGED?

Import two snapshots and compare them.

WHAT MATTERS?

No assessment available.

WHERE?

No domain distribution available.

POLICY COMPLIANCE

No configuration intent policy has been evaluated.

Snapshots

Snapshot A is the baseline; Snapshot B is the observed or candidate configuration.

BASELINE — SNAPSHOT A

Drop file here or click to choose

OBSERVED — SNAPSHOT B

Drop file here or click to choose

SNAPSHOT METADATA

Change inventory

Filter drift, set analyst expectation/status, or jump directly to supporting evidence.

CHANGE INVENTORY

IDTypeDomainPath / LocationBaselineObservedSignificanceConfidenceExpectationReferenceStatus

Investigation

Review aligned source evidence with PLUMBLINE analysis kept separate from analyst conclusions.

0 / 0

SNAPSHOT A — SOURCE EVIDENCE

CHANGE ANALYSIS

SNAPSHOT B — SOURCE EVIDENCE

BASELINE PROFILE

ORDERED NORMALIZATION PIPELINE

Rules execute from top to bottom. Reorder them to make the transformation explicit and reviewable.

IGNORE RULES

Ignored differences remain discoverable and are labeled VOLATILE rather than deleted.

SNAPSHOT A NORMALIZATION PREVIEW

SNAPSHOT B NORMALIZATION PREVIEW

IGNORED CHANGE DIAGNOSTICS

INTELLIGENT DRIFT ANALYSIS

Rule packs interpret evidence already imported into PLUMBLINE. They never contact a device, service, or address.

RULE ENGINE SUMMARY

No semantic analysis has been run.

PLATFORM ANALYSIS POLICY

Policy presets enable relevant rule packs without changing evidence.

RULE CATALOG

Built-in rules can be individually enabled/disabled. Custom rules use declarative matching only; imported policies cannot execute code.

CUSTOM RULE EDITOR / TEST BENCH

Select a custom rule or create a new one.

MATCHED RULES / PROVENANCE

Compare snapshots to populate rule provenance.

CONFIGURATION INTENT POLICY

Assertions describe approved state. PLUMBLINE evaluates them only against imported Snapshot B evidence; it does not contact the system.

POLICY RESULT

No policy has been evaluated.

BASELINE ASSERTIONS

Result states are PASS, FAIL, NOT OBSERVED, and EXCEPTED. A missing required setting is NOT OBSERVED; a forbidden setting that is absent is PASS.

IDRequirementPathExpectedSeverityResultEvidence

ASSERTION EDITOR

Select an assertion or create a new one.

POLICY / BASELINE CONFLICTS

Evaluate a policy to compare its assertions with Snapshot A and Snapshot B.

POLICY EXCEPTIONS

Exceptions must identify the assertion and record a rationale. They do not change the underlying evidence result; they change the disposition to EXCEPTED.

FINDINGS WORKBENCH

IDTitleCategorySignificanceConfidenceStatusEvidence

FINDING INSPECTOR

Select a finding to edit analyst fields and trace its evidence.

SNAPSHOT A SHA-256

SNAPSHOT B SHA-256

PROJECT

Project state is autosaved in this browser using localStorage. No data leaves the browser.