Identity
auth.logWho acted, and how confidently the evidence supports that actor.
Investigation labs
Amniora labs are generated practice investigations with synthetic artefacts, scoped learner tasks and support that stays inside the supplied case material.
Lab structure
Each investigation asks you to read the supplied material and write evidence-backed findings.
Evidence scope
A file can support one kind of claim and not another. Account records, logs, approvals and exports each have different uses.
auth.logWho acted, and how confidently the evidence supports that actor.
service and process historyWhat changed over time, separated from current state.
change request and ticketWhether the observed activity matches a scoped approval window.
PDF and evidence ZIPA stable learner-facing package for review.
Difficulty
Every difficulty keeps the same habit: make claims only from the evidence listed for the task. Higher difficulty asks for more correlation and clearer uncertainty.
Focused evidence
One clear output
30 min
Correlation
Evidence gaps and policy comparison
30 min
Multi-source analysis
Uncertainty and remediation depth
60 min
Guidance
Hints and task support point learners toward useful evidence while leaving the finding to the learner.
Clarifies what the current task is asking for before the learner answers.
Points to the next analytical step without naming the finding.
Provides safe command context when a task involves terminal evidence.
Checks understanding with a question tied to the current case.
Availability
Additional investigation environments may be introduced as Amniora develops. No availability date is implied.
Linux investigations currently include system activity, account behaviour, policy evidence and review tasks for private beta learners.
Difficulty and duration availability are reflected on the pricing page and inside the authenticated product.
Create an account to generate labs within the current private beta access limits.