Engineering Foundation
Multi-tenant runtime with row-level tenant isolation, the evidence model, and build, test and security gates.
- Tenant isolation
- Evidence model
- Design system
- Build, test and security gates
Platform trajectory
Ten milestones, M0 to M9: what is available today, what is a future capability, and what is not built by design. Nothing here is marketed as shipped unless it is — or as coming when it is not.
10 available
Legend
Every capability on this site carries one of these labels. This is what each one commits us to.
Built, tested and running in the platform today.
Safe to evaluate and plan against now.
Actively being engineered; scope and timing can still change.
Ask us for the current state before relying on it.
A committed design direction with architecture and prototypes, but no ship date.
Treat as intent, not as a feature.
Long-term vision that shapes architecture decisions today.
Not on a dated roadmap; never a purchase criterion.
Deliberately not built. The reason is stated wherever the capability comes up.
Not on the roadmap at all; do not plan around it.
Phases
Four commercial phases, each built on the graph the previous one populated.
Discover · Classify · Own identities
Secure credentials · Explain risk · Record exposure
Govern agents · Govern tools · Declare entitlements
Runtime action authorization · Agentic Access Management
Every phase is built and tested, not yet proven on a customer estate. What is not built is named as such — and never marketed as shipped.See the full platform trajectory
Milestones
The full sequence, grouped by phase, with the capabilities each milestone contains and its current label.
Multi-tenant runtime with row-level tenant isolation, the evidence model, and build, test and security gates.
Email and password sign-in with sessions, organizations, users, teams, invitations, RBAC and a hash-chained audit trail.
Five connectors — AWS IAM, GitHub, Kubernetes, HashiCorp Vault and Model Context Protocol — with identity discovery, normalisation, ownership, lifecycle and the identity graph.
A credential inventory mapped to identities, with age, rotation and expiry findings. Credential metadata only: secret values are never read.
Posture policy evaluation over collected evidence, findings that carry that evidence, and explainable risk by identity. Missing evidence is reported as unknown.
What was actually done and what leaked. Activity and credential exposures arrive through an ingestion API and feed findings; no connector collects activity.
AI agents as identities, MCP servers and tools, agent credentials and permissions, with autonomy and tool-effect controls. The MCP connector discovers tools; no connector discovers an agent, and no screen registers one.
Agent ownership and policy, policy exceptions that are scoped, approved by a second person and expire, the permission inventory, and effective access as an upper bound.
The runtime gate is built: an agent runtime presents its credential, thirteen deny-by-default rules decide, and the decision is recorded. Purpose is recorded for the investigator; no rule decides on it.
Just-in-time access grants approved by someone other than the requester, agent runtime credentials minted by a person, certification, delegation and drift, identity resolution and risk history.
Principle
A trajectory is only useful if the labels on it are trustworthy. These are the rules that keep them so.
We publish the trajectory so you can plan against it — and so nobody mistakes a strategic direction for a shipped feature.
Every capability is labelled. Available, future capability or not built — on every page that mentions it.
Direction is never sold as shipped. Credential brokering and one authority model across humans, machines and tools are direction until they are not.
Sample data says so. Every screenshot, graph and finding on this site is marked illustrative. None of it is customer telemetry.
Evidence before claims. No invented customers, quotes, logos, benchmarks or certifications. When evidence is missing, the product shows unknown — and so does this site.
A demo shows the available platform on your own identities and walks through the direction without dressing it up.
Platform