DWIRC:Staff Training/Practical Assessment
DarkWorld IRC Staff Training
Final Practical Assessment
| Program | DarkWorld IRC Staff Training Program |
|---|---|
| Assessment | Final Practical Assessment |
| Maximum score | 100 points |
| Passing score | 80 points |
| Recommended duration | 90–150 minutes |
| Environment | Approved training channels, test accounts, and simulations |
| Prerequisites | Modules 1–10, Code of Conduct, and Final Written Examination |
1. Purpose
The Final Practical Assessment determines whether a candidate can apply their training safely in realistic IRC situations.
The assessment evaluates:
- Secure IRC connection.
- Identity and account verification.
- IRC command accuracy.
- Channel modes.
- NickServ and ChanServ support.
- User communication.
- Moderation judgment.
- Incident handling.
- Evidence and documentation.
- Operator-level decision-making.
- Ethics and security.
Passing the written examination is not sufficient if the candidate cannot perform safely in practical situations.
2. Safety Rules
All exercises must use:
- An approved training channel.
- Trainer-controlled test accounts.
- Simulated evidence.
- Written command proposals.
- A non-production environment where available.
Candidates must not:
- Test commands against real users.
- Apply production network bans.
- Use production operator credentials.
- Request or enter another user’s password.
- Change real channel ownership.
- Modify production IRCd or Services configuration.
- Use OperOverride in production.
- Open simulated malicious links.
- Share restricted assessment information.
- Continue an action after the examiner says to stop.
Safety gate: A candidate who performs an unauthorized high-risk production action may be stopped and failed immediately.
3. Assessment Structure
| Station | Assessment area | Points |
|---|---|---|
| 1 | Secure connection and identity | 10 |
| 2 | IRC commands and information | 10 |
| 3 | Channel modes and access | 15 |
| 4 | NickServ and ChanServ support | 15 |
| 5 | User support and communication | 10 |
| 6 | Moderation | 15 |
| 7 | Incident response | 15 |
| 8 | Operator judgment, ethics, and security | 10 |
| Total | 100 | |
4. Mandatory Competencies
Regardless of total score, the candidate must demonstrate all of the following:
[ ] Does not request or expose passwords [ ] Uses verified TLS [ ] Understands project boundaries [ ] Can reverse training mode changes [ ] Avoids dangerously broad bans [ ] Escalates serious incidents [ ] Protects confidential evidence [ ] Discloses conflicts of interest [ ] Reports mistakes honestly [ ] Does not use production operator access
Failure of a mandatory competency may result in failure even when the numerical score reaches 80.
5. Candidate Information
Registered account: Current nickname: Candidate reference: Assessment version: Assessment date: Start time: End time: Timezone: Primary examiner: Secondary examiner: Training channel: Test identities:
Station 1 — Secure Connection and Identity
Maximum: 10 points
Candidate Tasks
The candidate must configure or demonstrate an IRC connection using:
Server: irc.darkworld.network Port: 6697 TLS: Enabled Certificate verification: Enabled SASL: Enabled where available
The candidate must then:
- Connect successfully.
- Identify the current nickname.
- Identify the ident.
- Identify the displayed hostname.
- Identify the registered Services account.
- Demonstrate WHOIS on their own training identity.
- Explain how the four identity elements differ.
- Explain what should happen if a certificate warning appears.
- Confirm that no credentials appear in public output.
Scoring
| Competency | Points |
|---|---|
| Correct server, port, and TLS | 2 |
| Certificate verification retained | 1 |
| SASL configured or correctly explained | 2 |
| Identity elements correctly identified | 2 |
| WHOIS used and interpreted safely | 2 |
| No credential exposure | 1 |
Critical Errors
- Disabling certificate verification without authorization.
- Posting a password.
- Claiming that WHOIS proves legal identity.
- Connecting to an unapproved server for the exercise.
Station 2 — IRC Commands and Information
Maximum: 10 points
Candidate Tasks
Using an approved training channel, demonstrate:
/JOIN #ApprovedTrainingChannel /NAMES #ApprovedTrainingChannel /TOPIC #ApprovedTrainingChannel /WHO #ApprovedTrainingChannel /WHOIS TestNickname /MODE #ApprovedTrainingChannel /MODE YourNickname /PART #ApprovedTrainingChannel Assessment exercise
The examiner may ask the candidate to explain:
- The purpose of each command.
- Which commands change state.
- Which commands require authorization.
- What information must remain confidential.
- How a netsplit differs from a normal quit.
Scoring
| Competency | Points |
|---|---|
| Correct command targets | 2 |
| Correct interpretation of results | 2 |
| Understands state-changing commands | 2 |
| Protects restricted information | 2 |
| Correctly explains quits and netsplits | 2 |
Station 3 — Channel Modes and Access
Maximum: 15 points
Candidate Tasks
With examiner authorization, the candidate must:
- View current channel modes.
- Record the original mode state.
- Set moderated mode.
- Demonstrate the effect on an unvoiced test user.
- Grant voice to the test user.
- Remove voice.
- Remove moderated mode.
- Apply a trainer-provided temporary ban.
- View the ban list.
- Remove the exact ban.
- Verify that the original channel state is restored.
- Explain `+b`, `+e`, and `+I`.
- Explain the differences between `+v`, `+h`, `+o`, `+a`, and `+q`.
Example training commands may include:
/MODE #ApprovedTrainingChannel +m /MODE #ApprovedTrainingChannel +v TestUser /MODE #ApprovedTrainingChannel -v TestUser /MODE #ApprovedTrainingChannel -m /MODE #ApprovedTrainingChannel +b TrainerProvidedMask /MODE #ApprovedTrainingChannel +b /MODE #ApprovedTrainingChannel -b TrainerProvidedMask
Scoring
| Competency | Points |
|---|---|
| Records original state | 2 |
| Applies modes accurately | 3 |
| Uses parameters correctly | 2 |
| Understands access hierarchy | 2 |
| Explains ban and exception lists | 2 |
| Verifies every change | 2 |
| Restores original state | 2 |
Critical Errors
- Applying a broad `*!*@*` ban.
- Targeting a real user without permission.
- Failing to remove training restrictions.
- Using override commands.
- Changing founder or persistent access without authorization.
Station 4 — NickServ and ChanServ Support
Maximum: 15 points
Candidate Tasks
The candidate must safely assist simulated users with:
Case A: NickServ Authentication
A user can connect but cannot authenticate.
The candidate should:
- Ask for the exact error.
- Confirm the registered account name.
- Confirm email registration where relevant.
- Confirm TLS.
- Check SASL configuration.
- Use official NickServ help.
- Avoid asking for the password.
- Escalate if normal recovery fails.
Case B: Nickname Already in Use
The user’s normal nickname is connected elsewhere.
The candidate should:
- Ask the user to connect with a temporary nickname.
- Confirm account authentication.
- Check whether a bouncer or other client is connected.
- Locate the supported recovery help.
- Avoid forcibly disconnecting the nickname without verification.
Case C: Missing Channel Operator Status
A user says ChanServ did not give them `+o`.
The candidate should distinguish:
- Current nickname.
- Registered account.
- Live `+o`.
- Persistent ChanServ access.
- Channel settings.
- Possible Services failure.
Scoring
| Competency | Points |
|---|---|
| Uses current Services help | 2 |
| Protects passwords | 3 |
| Correct NickServ troubleshooting | 3 |
| Safe nickname-recovery guidance | 2 |
| Distinguishes live mode from access | 3 |
| Escalates ownership or administrative issues | 2 |
Critical Errors
- Asking for a password.
- Asking for an email-confirmation code.
- Identifying to the user’s account.
- Changing a channel founder.
- Dropping a channel.
- Using OperServ without authorization.
Station 5 — User Support and Communication
Maximum: 10 points
Simulation
The examiner acts as a frustrated new user who says:
“I cannot connect, NickServ does not work, and nobody is helping me.”
The candidate must:
- Acknowledge the user.
- Clarify whether the problem occurs before or after connection.
- Ask for the client and exact error.
- Confirm the server, port, and TLS.
- Avoid blaming the user.
- Provide one step at a time.
- Explain expected results.
- Recognize a possible wider problem if other reports appear.
- Summarize or escalate the case.
- Close professionally.
Scoring
| Competency | Points |
|---|---|
| Professional acknowledgement | 1 |
| Identifies the actual problem | 2 |
| Asks useful questions | 2 |
| Provides clear steps | 2 |
| Protects privacy and credentials | 1 |
| De-escalates frustration | 1 |
| Confirms outcome or escalates | 1 |
Station 6 — Moderation
Maximum: 15 points
Simulation A: Repeated Flooding
A test user repeatedly floods the training channel after a warning.
The candidate must:
- Issue a clear formal warning.
- Preserve the relevant context.
- Select a proportionate response.
- Set a precise trainer-approved ban if required.
- Kick with a professional reason.
- Verify the restriction.
- Complete a moderation record.
- Explain when the ban should be reviewed.
Simulation B: Shared Host
The disruptive test user shares a displayed host with two innocent test users.
The candidate must:
- Recognize the shared-host risk.
- Avoid banning the entire host automatically.
- Recommend a more precise restriction.
- Explain when network assistance is required.
- Protect innocent users.
Scoring
| Competency | Points |
|---|---|
| Warning quality | 2 |
| Proportionate response | 3 |
| Ban-mask precision | 3 |
| Professional kick reason | 2 |
| Protects innocent users | 2 |
| Verifies and documents action | 2 |
| Defines review or expiry | 1 |
Critical Errors
- Banning every user to stop one person.
- Using an insult as a kick reason.
- Punishing criticism rather than misconduct.
- Applying network-level commands.
- Ignoring known innocent users affected by the mask.
Station 7 — Incident Response
Maximum: 15 points
Simulation
The examiner presents the following developing incident:
Three new accounts join `#DarkWorld` and begin posting a fake NickServ login page. Similar links appear in `#Help`. One user says they entered their password. A relay begins importing the same link from an external channel. Staff have not yet assigned an incident lead.
The candidate must:
- Recognize the incident and assign an initial severity.
- Identify ongoing harm.
- Recommend immediate containment.
- Avoid opening the malicious link.
- Protect the user who exposed credentials.
- Preserve messages, timestamps, accounts, channels, and relay information.
- Notify appropriate staff.
- Request or identify incident leadership.
- Prepare an internal update.
- Prepare a safe public warning.
- Identify confirmed facts and unverified reports.
- Explain recovery requirements.
- Complete an incident handover.
Scoring
| Competency | Points |
|---|---|
| Incident recognition and severity | 2 |
| Immediate containment | 3 |
| Credential-compromise response | 2 |
| Evidence and privacy | 2 |
| Correct escalation | 2 |
| Internal and public communication | 2 |
| Handover and recovery | 2 |
Critical Errors
- Opening the simulated malicious link.
- Repeating an exposed password.
- Announcing that all accounts are compromised without evidence.
- Publishing restricted evidence.
- Failing to escalate active phishing.
- Treating the relay operator as the confirmed author without investigation.
Station 8 — Operator Judgment, Ethics, and Security
Maximum: 10 points
Scenario A: Network Restriction
An abusive connection shares a VPN endpoint with twenty legitimate users. The candidate is asked whether to recommend a permanent global host ban.
The candidate must:
- Identify the scope risk.
- Consider narrower options.
- Explain required authorization.
- Propose a proportionate duration.
- Define verification and review.
- Avoid executing the command.
Scenario B: Conflict of Interest
The candidate’s friend asks them to remove a ban.
The candidate must:
- Disclose the conflict.
- Avoid making the final decision.
- Preserve the original action.
- Refer the appeal to a neutral reviewer.
Scenario C: Credential Exposure
A simulated operator password is posted in a restricted channel.
The candidate must:
- Treat it as compromised.
- Avoid repeating it.
- Escalate immediately.
- Recommend credential rotation.
- Review related access.
- Document the incident.
Scoring
| Competency | Points |
|---|---|
| Network-ban judgment | 3 |
| Conflict-of-interest handling | 2 |
| Credential-compromise response | 3 |
| Accountability and documentation | 2 |
Critical Errors
- Recommending a broad permanent ban without considering innocent users.
- Removing a friend’s ban.
- Reusing or sharing the exposed credential.
- Hiding the exposure.
- Performing a production network command.
6. Mandatory Documentation Tasks
The candidate must submit:
- One support escalation summary.
- One channel-mode change record.
- One moderation report.
- One incident timeline.
- One incident handover.
- One operator-action proposal.
- One security-incident report.
- One candidate self-review.
Submissions must not contain real credentials or unnecessary private information.
7. Candidate Self-Review
After completing all stations, the candidate should answer:
1. Which station was most difficult? 2. Which action required the most caution? 3. Did I make any command or judgment error? 4. How did I correct it? 5. Did any proposed action risk innocent users? 6. What did I escalate rather than handle alone? 7. What further training do I require? 8. Am I ready for supervised trainee duties? 9. Which specialist area interests me? 10. What access do I believe is not yet appropriate for me?
A candidate who honestly identifies a limitation should not be penalized merely for recognizing it.
8. Examiner Scoring Record
Candidate: Assessment version: Date: Station 1 — Secure connection: /10 Station 2 — IRC commands: /10 Station 3 — Channel modes: /15 Station 4 — IRC Services: /15 Station 5 — User support: /10 Station 6 — Moderation: /15 Station 7 — Incident response: /15 Station 8 — Operator ethics and security: /10 TOTAL: /100 Mandatory competencies passed: Yes / No Critical error observed: Yes / No Automatic-failure review required: Yes / No Strong areas: Weak areas: Unsafe actions: Commands requiring correction: Privacy or security concerns: Recommended remediation: Recommended trainee role: Recommended access level: Examiner: Second examiner: Final result:
9. Assessment Results
| Result | Meaning |
|---|---|
| PASS | Candidate scored at least 80 and passed every mandatory competency |
| CONDITIONAL PASS | Minor, non-safety remediation required |
| REVISION REQUIRED | Candidate requires additional study and another practical assessment |
| FAIL | Candidate did not meet the required standard |
| DISQUALIFIED | Serious safety, integrity, or unauthorized-access violation occurred |
A conditional pass cannot be used when the candidate fails a mandatory security or ethics competency.
10. Automatic-Failure Review
Possible automatic-failure conditions include:
- Requesting or exposing a password.
- Using production operator credentials.
- Applying a production network ban.
- Running a dangerous server command.
- Using OperOverride without authorization.
- Intentionally targeting a real user.
- Deliberately falsifying evidence.
- Retaliating during the assessment.
- Sharing restricted assessment material.
- Refusing to stop an unsafe action.
- Impersonating another candidate.
- Attempting to alter the examiner’s record.
Where practical, two authorized reviewers should confirm an automatic-failure decision.
11. Remediation
A candidate requiring additional training should receive:
- A written feedback summary.
- Specific modules to review.
- Required exercises.
- A minimum practice period where appropriate.
- A different assessment scenario.
- A supervised re-attempt date.
Examples:
| Weakness | Recommended remediation |
|---|---|
| Unsafe ban masks | Repeat Modules 4 and 7 with targeted-ban exercises |
| Poor account security | Repeat Modules 5 and 10 |
| Weak support communication | Repeat Module 6 and complete roleplays |
| Poor incident coordination | Repeat Module 8 and handover exercises |
| Excessive operator response | Repeat Modules 7, 8, and 9 |
| Project-boundary confusion | Repeat Modules 1 and 10 |
12. Reassessment
A candidate may normally receive one reassessment after completing assigned remediation.
The reassessment should:
- Use different test identities.
- Use different incident details.
- Retest failed competencies.
- Retest any mandatory safety concern.
- Confirm that earlier weaknesses were corrected.
- Be recorded separately.
A third attempt should require management approval.
13. Recommendation for Trainee Placement
Passing the assessment means the candidate may be considered for supervised trainee duties.
It does not create an automatic right to:
- IRC operator access.
- OperServ access.
- IRCd server access.
- Services database access.
- Policy approval access.
- Relay administrative access.
- Access to another DarkWorld project.
The examiner may recommend:
| Recommendation | Suitable initial duties |
|---|---|
| Support trainee | Help-channel assistance and documentation |
| Moderation trainee | Supervised channel moderation |
| Policy trainee | Policy links, case preparation, and observation |
| Relay compliance trainee | Discovery records and supervised follow-up |
| Services support trainee | Normal account and channel assistance |
| Operator candidate | Additional supervised operator-specific training |
| Further training | No live duties until remediation is complete |
14. Access Recommendation
The examiner should recommend the minimum access required.
Example:
Recommended role: Recommended public channels: Recommended staff channels: Recommended bot permissions: Recommended Services permissions: Recommended operator permissions: Explicitly excluded permissions: Mentor: Probation duration: Review date: Management approval:
15. Completion Approval
The candidate may advance only when:
[ ] Written examination passed [ ] Ethics threshold passed [ ] Practical assessment passed [ ] Mandatory competencies passed [ ] Code of Conduct accepted [ ] Security declaration accepted [ ] Candidate identity verified [ ] Mentor assigned [ ] Role defined [ ] Access recommendation completed [ ] Management approval recorded
16. Next Step
Candidates who pass proceed to:
DarkWorld IRC Trainee Evaluation
Previous: Final Written Examination Program: DarkWorld IRC Staff Training Program Next: Trainee Evaluation