Methodology

Last updated: 2026-09-08

This page states how HWT selects, scores, and corrects OSINT rows so outsiders can cite the platform with clear limits. It is not a legal opinion and does not replace desk judgment.

Inclusion bar

HWT tracks hybrid-threat activity that affects EU/EFTA/EEA and NATO Europe. In scope: electronic warfare, undersea and maritime pressure, aviation and airspace incidents, cyber operations, information and cognitive ops, border and gray-zone coercion, economic and energy pressure, espionage and active measures, proxy enablers, and defense preparation posture (DEFENSE_PREP) when it clarifies the threat picture.

Out of scope by default: pure Ukraine-theater kinetic reporting that does not show a Europe/NATO hybrid effect, routine domestic crime without a hybrid vector, and unverified social posts with no corroborating source path.

Russia-origin rule

Russia and Russia-aligned actors are a primary attribution focus for hybrid pressure on Europe. Attribution stays provisional until source reliability and information credibility support it. Absence of a Russia link does not auto-exclude a signal if the row still meets the inclusion bar.

AJP-2.1 scoring

Analysts score source reliability and information credibility using an AJP-2.1-inspired scale. Scores guide triage; they do not replace archives or primary evidence. Domain priors may suggest a starting score; analysts can override with a recorded reason.

Evidence and archives

A citeable row needs a stable signal ID and, whenever possible, an archive or other durable capture of the source. Missing media ("hollow") does not delete the claim, but desks must not present hollow rows as fully evidenced. Prefer archive-backed claims in public briefs.

Campaigns and briefs

A campaign groups related signals under one pressure theme (database table events). Weekly briefs summarize approved signals in a calendar window. Flat-week coverage means no active campaign membership covered that window; do not invent campaign framing from a flat list.

Corrections

If you find a factual error on a published signal or brief, submit a corrected source via Submit Signal with a clear note, or contact the desk operators who run your deployment. Material location, type, or attribution changes need a second review when that workflow is enabled. Retractions and corrections stay visible in the analyst history where the UI exposes them.

More product context: About. Active public campaigns: Campaigns.