Module 3 practical

Retrieval and Tool Review VM

Review a support assistant with RAG and action tools the way a blue-team analyst would before release: classify document trust, preserve tenant scope, narrow tool permissions, add approval gates, and replay the workflow safely.

  1. Review the evidence about the knowledge base, tenant scope, and exposed tools
  2. Document document trust and access-scope findings
  3. Harden ingestion, retrieval, tool, and approval controls
  4. Deploy the defended configuration and run replay
Live browser workstation inside the recap room.
A

AISPLOIT retrieval and tool VM

supportpilot-rag-review

baseline rag config

Use Files, Workbench, Terminal, and Mission Control to complete the review.

Security Workbench

Editor

README.md

/home/analyst/README.md read only clean

Analyst Terminal

Console

Analyst terminal