Onam Security

The orchestrator

The orchestrator turns a request into a plan, routes each step to a specialist agent, joins the results and surfaces conflicts. It never answers on its own.

Status: Early access.

What it does

  1. Detects the intent and classifies the request.
  2. Breaks it into steps and picks the agent for each.
  3. Builds a plan and resolves dependencies — steps with no dependency run in parallel.
  4. Passes each step the previous step’s result set, so agents narrow rather than re-discover.
  5. Aggregates the answers on one canonical resource identity.
  6. Surfaces conflicts between agents to you.
  7. If an action is needed, raises it for approval — and stops there.

The orchestrator has no access to estate data itself. An orchestrator that could read data would eventually answer a question on its own, unaudited and without evidence.

Kinds of request

KindProducesExample
QuestionA direct answer from one agent“How many production instances are in this account?”
InvestigationA plan and a joined answer“Which exposed assets have critical findings, and who owns them?”
Action requestA plan, a proposal and an approval“Close SSH from the internet on these instances.”
Workflow startA workflow run“Prepare this account for audit.”
ReportA synthesised document with evidence“Give me the exposure summary for the board.”
UnsupportedA refusal with the reasonAnything outside cloud operations, or unsafe

Conflicts are never auto-resolved

ConflictExampleWhat happens
FactTwo sources disagree on an instance sizeBoth shown with sources and times; a declared precedence applies and is flagged
JudgementSecurity says remove it; another agent says it is a recovery dependencyEscalated to you with both positions and their evidence
RecommendationDownsize versus scale outShown as a trade-off; the orchestrator does not pick
StalenessOne source is hours olderThe oldest time is reported as the answer’s freshness

Failure handling

Permission denied is reported as “not authorised”, never as “no data”. A product that is down is named in the answer and the rest of the plan continues. A budget or loop limit stops the task and reports what is left undone. A failed validation after a change rolls back and is never retried with the same change.