Onam Security

Availability and status

What in Onam Operations you can use today, what is in early access or development, and what is on the roadmap — stated plainly, capability by capability.

What the labels mean

LabelMeaning
AvailableIn Onam Security today, for every customer.
Early accessRunning on the Onam platform and enabled per organisation by invitation. Agents answer and propose; nothing changes your cloud.
In developmentBuilt or specified; its data feed or enablement is not in place yet.
On the roadmapDesigned, not offered. No date is promised.

Capabilities

CapabilityStatusDetail
AI Assistant in Onam SecurityAvailableAsk questions about your posture in plain language; specialists query your findings and cite them. Read-only.
Agent workspaceEarly accessChat with the agents, each reply attributed to the agent that produced it, with a context panel for evidence, tasks and actions.
Orchestrator and visible plansEarly accessA multi-step question becomes a plan you can see — which agent, which skill, in which order — before and while it runs.
Asset Agent and Security AgentEarly accessOver the Onam Security inventory and findings, on AWS first.
Evidence on every claimEarly accessEach number cites the skill, tool, query, rows and scan time that produced it.
Approval centreEarly accessOne queue for every proposed change, diff first, with rollback and blast radius shown before the decision.
Activity and audit trailEarly accessEvery turn, tool call, decision and approval recorded append-only, with a hash-chain check that nothing was edited.
ReportsEarly accessA conversation or task exported with its evidence preserved.
Kill switch and autonomy ceilingEarly accessStop all agent activity for your organisation; cap how far agents may go — read, analyse, recommend, simulate, propose.
Compliance Agent and Data AgentIn developmentBuilt; waiting on the compliance-results, exposure and relationship feeds into the estate layer.
Change proposals with rollbackIn developmentAutomation Planner proposals with exact change, rollback and dry run; blast-radius inputs are being connected.
Pre-built workflowsIn developmentMulti-step procedures such as audit preparation and exposure remediation, with approval steps built in.
Executing approved changesOn the roadmapThe actor applies an approved change in an isolated sandbox, validates it and rolls back on failure. Built and tested; enabled for no customer.
FinOps, DR and Architecture agentsOn the roadmapCost, recovery and design reasoning across the estate.
Cost and recovery data (Onam FinOps, Onam DRM)On the roadmapJoining exposure with cost and recoverability in one answer.
Azure, Google Cloud and Kubernetes actionsOn the roadmapAWS first; the design keeps provider specifics inside tools so agents do not change.
Event triggers and a workflow builderOn the roadmapStart investigations from events; compose workflows that cannot publish an execute step without an approval step.
Customer-authored agentsOn the roadmapNeeds a sandbox and certification model that does not exist yet.

Agents

AgentLevelStatusNote
Asset AgentL1Early accessReads the Onam Security inventory today.
Security AgentL1Early accessReads findings today; exposure and attack-path context are being connected.
Compliance AgentL1In developmentWaits on the compliance-results feed into the estate layer.
Data AgentL1In developmentWaits on the exposure and relationship feeds into the estate layer.
Automation Agent — plannerL2In developmentProposal flow is built; blast-radius inputs are being connected.
Automation Agent — actorL3On the roadmapBuilt and tested in the platform; not enabled for any customer.
FinOps AgentL1On the roadmapNeeds cost data in the estate layer.
DR AgentL1On the roadmapNeeds recovery data in the estate layer.
Architecture AgentL2On the roadmapNeeds the full topology graph as an input.

Use cases

Use caseAgentsStatus
Find internet-exposed critical assetsAsset → SecurityEarly access
Triage a new critical findingSecurity → AssetEarly access
Identify excessive IAM permissionsSecurityEarly access
Review a newly connected cloud accountAsset → SecurityEarly access
Prepare compliance evidence for an auditCompliance → Data → SecurityIn development
Find sensitive data exposed publiclyData → SecurityIn development
Create a remediation planSecurity → Automation plannerIn development
Execute an approved security remediationAutomation actorOn the roadmap
Decide whether an idle resource is safe to removeFinOps → Asset → DROn the roadmap
Find business-critical assets with no recovery planDR → AssetOn the roadmap

Getting early access

Early access is by invitation. Onam enables your organisation, connects the agents to your Onam Security data, and sets your autonomy ceiling to “propose”. Ask for early access.

Executing changes in your cloud is not offered in early access. When it is, it will need a write role you create in your own account and an autonomy ceiling you raise yourself — and every change will still need a person’s approval.