RUN.03 — Own-source bug hunt

Suspicions stay candidates until a runtime says otherwise.

Source-uploaded analysis is fast and powerful — and it routinely produces high-confidence noise. SecHive keeps source candidates in a separate column from runtime-validated findings until exploitability is confirmed.

The split. Source candidates and runtime findings are different objects in the proof pack. Reports show both, side by side, but never confuse them.

Source candidate

A reasoned suspicion grounded in code paths. May or may not be exploitable in the running system. Useful for engineering review and code-level hardening.

Runtime finding

A validated, reproducible behavior in the live target. Suitable for client report, BBP submission, or audit evidence.