- soc-gateway now routes directly to soc-backend via http://10.100.0.94:4000 - deploy.js dynamically queries backend internal WireGuard IP via exec_in_app - zero traffic travels over the public internet between microservices
- Network Policy exists as Rego editor in console UI - cumin.dev/network-policy returns 405 (endpoint exists) not 404 - Not accessible via MCP or bearer token - UI only feature - Rating updated: 2/10 -> 7/10
- Secrets: WORKING (value must be base64) - 9/10 - Constellations: WORKING (apps: soc-gateway + soc-backend added) - 9.5/10 - Pull Secrets: WORKING (validates live credentials) - 8/10 - Overall score revised: 7.8 -> 9.0/10 - Created 3 project secrets, 1 active constellation (soc-private-net)
9-service SOC platform deployed on Cumin via MCP Features: SIEM, SOAR, Honeypot, IDS/IPS, Firewall, UBA, Threat Intel, Vuln Scanner (real targets), Incident Management Architecture: 2-app consolidated deployment (backend + gateway)