Using the product

Roadmap (PREVIEW screens)

On the roadmap: Delegation Provenance, Attribution, Agent Baselines, MCP Supply Chain, and Federated Intel — real engines whose live capture/federation legs are not yet wired.

On the roadmap (PREVIEW). The screens below carry a PREVIEW badge in the product. Their engines and read paths are real, but a live collector, scanner, federation, or signing leg is not yet connected — so a production org's data is honestly empty (or illustrative) until that leg lands. Treat PREVIEW data as illustrative of capability, not a complete live feed for your estate, and not a shipped feature. These are not in the default customer sidebar yet.

Delegation Provenance — PREVIEW

/delegation-provenance · GET /api/delegation/chains

Per-hop proof that delegated authority only ever narrowed (delegation provenance). The engine is real and runs live, but the live MCP-gateway capture path and attestation signing are not wired — a real tenant stays honestly empty until a gateway mediates a hop, and proven segments read "attestation pending (signing gated)" rather than fabricate a ledger id.

Attribution — PREVIEW

/attribution · GET /api/attribution

Resolves every captured agent→tool action to its full triple identity — the human who authorized the chain, the agent that acted, and the tool it invoked — with the live per-hop verdict and whether that agent carries a signed passport. An agent with no matching passport is shown ungoverned, never papered over. PREVIEW for the same gateway-capture reason as Delegation Provenance.

Agent Baselines — PREVIEW

/agent-baselines · GET /api/agent-baselines

A 24-hour behavioral fingerprint per agent — capability mix, drift percentage, call-volume stream, and an anomaly feed — on the premise that agents have no passwords to rotate, so deviation from baseline is the compromise signal. PREVIEW because the live behavior collector and federated peer comparison aren't wired, the peer-percentile dimension is explicitly a demo value, and the action buttons (Freeze / Export / Acknowledge / Manifest) are disabled.

MCP Supply Chain — PREVIEW

/mcp-supply-chain · GET /api/mcp/servers

Treats every MCP server your agents load as supply chain: origin, signature status, risk tier, exposed tools (and which are sensitive), consumers, and matched CVEs. You can download a signed, ledger-anchored AI-BOM in CycloneDX 1.7 or SPDX 3.0.1 for EU AI Act Annex IV evidence (model lineage is honestly marked "not attested"). PREVIEW because the inventory and risk-tiering are real but there is no live MCP scanner or runtime telemetry yet — tool-call counts read 0 until a collector or the Gate proxy reports them.

Federated Intel — PREVIEW

/federated-intel · GET /api/intelligence

A threat-advisory feed with a real, per-organization exposure match computed against your MCP servers and open findings. The advisories and your exposure are real; only the cross-tenant peer counts ("seen at N tenants") and the network-map visualization are illustrative until federation is live, which the screen calls out inline, with drill-in/apply actions disabled.


When each of these graduates to real per-org data, its PREVIEW badge is dropped and it joins the live posture screens.