The playground
The playground is Pharos with the door open. It is the real console reading the real corpus, signed in to a sample organization so the whole product can be walked without an account, without installing anything, and without a sales call. It is at playground.pharos.wazuh.com.
What it is
The playground is the product itself, not a mock-up of it. The search reaches the same corpus of over 366,000 CVE records, the CVE pages carry the same sources and scores, and the indicator lookups run against the same indicator corpus that a paying workspace uses.
What is invented is the customer side. The playground is signed in as a sample organization, and its managers, agents, signals, watchlists and billing are generated sample data, there so the fleet, the Signals inbox and the Billing page have something to show. The corpus is real, the fleet around it is a sample, and the console labels the sample data as such.
Nothing can be changed
The playground is read-only. Everything that reads works, and everything that would write is disabled: no manager can be connected, no watchlist saved, no setting changed, no billing switched on. It is a tour of the product rather than a trial workspace, so there is nothing to set up and nothing to undo.
Getting in
Opening playground.pharos.wazuh.com is the whole of it. There is no account to create and no password to enter. The ecosystem rail down the side links to the other Wazuh Labs services' own playgrounds rather than their live consoles, so a tour of the ecosystem stays in the demos throughout.
To use Pharos with a real fleet, sign in with a Wazuh ID account instead.