Managed cloud collectors
AWS · Azure · Google Cloud
Roadmap / Updated September 2026
See what has shipped in private access, what is under design-partner validation, and the evidence gates that decide what moves forward.

Release 01 · Shipped in private access
Evidence → gate → approved action
AWS · Azure · Google Cloud
Six inspectable admission gates
GitHub · GitLab · Bitbucket
Jira · routing · exceptions
Product horizons
The Now horizon reflects shipped private-access capabilities. Next and Long term describe direction, and may change as reliability, isolation, explainability, and reviewer-control evidence develops.
The current release connects scoped evidence, bounded review, deterministic policy, and separately approved action in one inspectable workflow.
Code, CI/CD, cloud, upload, scanner, and MCP observations reconcile into current architectural truth.
Bounded specialist roles produce typed artifacts with evidence IDs, cost, and confidence.
Static verification and human approval stay between a proposal and a pull request.
Installable provider-native AWS, Azure, and Google Cloud inventory jobs expose account boundaries, completeness, warnings, and freshness through one typed evidence contract.
GitHub, GitLab, and Bitbucket projects use explicit selection, exact revision identity, encrypted read credentials, and a separate write boundary.
A provider-neutral check audits the exact merge commit and turns persisted architecture policy into an installable required check.
Workspace policy selects approved routes; replayed quality, retention, latency, tool-discipline, and cost gates decide which models may enter the catalogue.
Ticket creation, ownership routing, and policy exceptions require capability-specific grants and a separate human approval.
Admin diagnostics expose connector health, cloud freshness, model qualification, workflow history, failures, and first-party support cases.
Teams can ask evidence-bound questions, inspect exact citations, and keep signed workflow delivery and audit history visible.
These capabilities remain in private access while real workspaces validate reliability, tenant isolation, evidence quality, and recovery behavior.
A repeated decision or evidence gap
Threat model, data boundary, and acceptance test
Real workflows with visible failure states
Documented behavior and operational evidence
Current release surface
These capabilities are implemented, documented, tested, and available in private access as one connected operating loop.
Provider-native AWS, Azure, and Google Cloud collectors report typed inventory, completeness, warnings, and freshness.
Read-only GitHub, GitLab, and Bitbucket connections resolve explicitly selected projects to exact revisions.
Installable checks audit the exact commit and apply persisted architecture policy without agent write authority.
Replayed quality, retention, latency, tool discipline, and cost evidence govern catalogue admission.
Jira tickets, ownership routes, expiring exceptions, and capability grants preserve a human approval boundary.
Admin diagnostics and the first-party support queue expose health, freshness, qualifications, action history, and failures.
Long-term discipline
Dates are deliberately absent until the evidence says a capability is ready. Direction remains public so design partners can challenge the order and the contract.
Models may prepare actions, but permission and explicit confirmation still decide whether anything changes.
Coverage gaps remain visible and cannot be converted into confidence by wording or model choice.
Provider routing is a policy decision under one evidence and cost contract.
Replay, recovery, failure visibility, audit history, and support behavior ship with the feature.
Design partners get a direct line into review workflows, missing context, provider policy, and the standards that gate public availability.