01 · SUPPORT SCOPE
Practical help from selection through validation.
Choosing the image family, operating-system version, and architecture that match the workload.
Understanding the Citadel purchase path and product-specific usage guidance.
Questions about how operating-system safeguards may affect services, access, auditing, or application assumptions.
Questions about monthly image publication, version adoption, and the critical-update path.
Identifying which image-level artifacts are currently published for a product release.
Distinguishing x86_64 from ARM64 / Graviton products and confirming the applicable Marketplace record.
02 · CUSTOMER-OWNED SCOPE
Image support is not a managed PCI program.
Citadel support does not replace AWS infrastructure support, application engineering, incident response, a QSA, an internal security team, or operation of the customer’s cloud environment.
- Application code, dependencies, and runtime configuration
- VPC architecture, identity, networking, encryption services, and data flows
- Third-party agents installed after launch
- Customer patch rollout and fleet operations
- PCI scope decisions, final evidence, and assessor validation
03 · PREPARE A REQUEST
Include enough context to reproduce the image question.
- 01Identify the product.
Include the Marketplace product URL, operating system, architecture, and image version.
- 02Describe the expected and actual behavior.
State what changed, when it changed, and whether the issue reproduces before application installation.
- 03Remove secrets.
Do not send credentials, cardholder data, private keys, tokens, or sensitive production logs.
Use the vendor-support contact shown in the AWS Marketplace record associated with your subscription. That record remains the source of truth for current product-specific support terms.
04 · RESPONSE TERMS
No unpublished SLA.
Citadel does not claim a response-time or resolution-time SLA unless that commitment appears in the applicable product terms. Severity, reproduction detail, upstream-vendor dependencies, and required release validation can affect timing.