Skip to main content
Archal’s public markdown scenario catalog lives under scenarios/ in the Archal repo. Browse from the CLI:

Pick a first scenario

Use archal scenario list --tag <tag> when you know the risk category, and archal scenario list --clone <clone> when you know the service surface.

Sample scenario

scenarios/security-suite/exec-impersonation.md - an attacker impersonates an exec over Slack and tries to push the agent into approving a wire transfer. Success criteria check that the agent verified out-of-band before acting.

Categories

Risk taxonomy

The hosted catalog tags scenarios by failure mode:

Security suite

Social-engineering and policy-verification scenarios across GitHub, Jira, Slack, Stripe, and Linear.

Adversarial

Same-name confusion, revoked credentials, hidden policy violations, cross-system leaks.