# Vercy AI instruction — YAML 1.2 (JSON-compatible) { "vercy": "1.0-draft", "metaModel": { "id": "world.s8-cyber-integrity-and-system-security", "name": "Cyber Integrity & System Security", "version": "0.2.0-legacy", "family": "World Models", "category": "Reference example", "industry": [ "Cross-industry" ], "domain": [ "security-ownership-access" ], "tags": [ "cyber", "integrity", "system", "security" ], "status": "legacy example" }, "canonicalUrl": "https://ver.cy/models/world-s8-cyber-integrity-and-system-security/", "structure": { "bundles": [ { "name": "weakness", "description": "What could be exploited", "layersText": "vulnerabilities`: known weaknesses in software and components · `exposures`: which concrete systems carry them and their patch state", "findings": [] }, { "name": "threat", "description": "Who and what attacks", "layersText": "actorsAndCampaigns`: actors, campaigns and techniques posing risk · `indicators`: observable signs of compromise and their attribution", "findings": [] }, { "name": "incident", "description": "What actually happened", "layersText": "detection`: declared incidents, triage and impact scoping · `response`: containment, recovery and closure", "findings": [] }, { "name": "assurance", "description": "How well defended", "layersText": "controls`: each owner's declared control baseline · `posture`: periodic assessments against that baseline", "findings": [] } ] }, "serviceLayers": { "artifactFormats": [], "policies": [], "crud": {}, "roles": [] }, "legacySource": "/models/docs/security-ownership-access/S8-cyber-integrity-and-system-security.md", "migrationNotes": [ "Findings, questions, artifacts, CRUD rules and access roles are not explicit in this legacy version." ] }