Skip to main content
This page is the public boundary contract for Attesta OSS and commercial services.

Boundary Rule

Keep product mechanics open source. Monetize operational scale and enterprise integrations.

Feature Matrix

CapabilityOSS (this repo)Cloud / Enterprise Services
Core gate pipelineYesYes
Python + TypeScript SDKsYesYes
Risk scoring + challenge routingYesYes
Trust engine + audit chainYesYes
CLI and docsYesYes
Framework adapters and no-code connectorsYesYes
Hosted approval routingNoYes
Identity-aware multi-party orchestrationNoYes
SSO/SIEM/GRC enterprise connectorsNoYes
Managed immutable retention and searchNoYes
Compliance reporting UI and policy governanceNoYes
SLA-backed operations supportNoYes

What OSS Users Can Expect

  • Fully functional local/self-hosted gating for high-impact agent actions.
  • Extensible integration points for custom risk scorers, renderers, and audit sinks.
  • Public release artifacts, SBOMs, and provenance attestations.

What Service Users Get In Addition

  • Managed control plane for approval routing at organizational scale.
  • Enterprise identity and governance integrations.
  • Operational reliability commitments and support SLAs.

Source of Truth

For release scoping details, see OSS_SCOPE.md in the repository root.