Public roadmap · updated quarterly

The Network Automation Roadmap

Exactly what we have shipped, exactly what we are building, and exactly what is planned next. Every entry is a commitment we can back. No vaporware, no quiet reshuffles.

SHIPPED
6
ACTIVE
0
CADENCE
6wks
01. Operating principles

How we decide what ships.

Four rules keep the roadmap honest: no speculation, no silent cuts, security in front, and customers in the room.

Cadence

Predictable releases

A roughly six-week cycle, holding steady for three years. No surprise drops, no skipped quarters.

Security

Security first

Every feature is measured against our security bar before scope is approved. Patches always jump the queue.

Source

Customer driven

Built on direct feedback from enterprise deployments, not guesswork or analyst fiction.

Honesty

No speculation

Only commitments land here. If it isn't being built or explored, it isn't on the map.

Read-only this era - rConfig v8.3 and beyond

How the AI releases map to the maturity model

The roadmap is the proof the model is real. We climb in the open, one rung at a time, and we never claim a rung we have not built.

  • v8.3·Stages 1 and 2

    Read-Only AI

    Assisted Insight and Augmented Operations

    The AI reads and explains your estate. Nothing writes to the network.

  • v8.4·Stage 3

    Supervised Automation

    Supervised Automation

    The write boundary opens, under human approval. rConfig proposes, you approve.

  • Horizon·Stage 4

    Autonomous Operations

    Autonomous Operations

    Explicitly future. Not a committed release, and we will say so plainly until we reach it.

02. Release timeline

Shipped, in flight, and on deck.

Every release, with the specific items we shipped or plan to ship. Shipped versions sit on the left, upcoming work on the right. Newest at the top.

v9.x
Under EvaluationSecurityv9.x

Vulnerability & Risk Intelligence

Tying configuration state to known vulnerabilities and actionable risk context. Tentative, exploratory horizon work, not committed scope.

  • CVE Database Integration: Surface known vulnerabilities in config context.
  • Vendor Advisories: Automated intake of PSIRT feeds.
  • Risk Context: Severity and exposure surfaced on affected devices.
confidence:ExploratoryTBD
v8.4
PlannedAutomationv8.4

Supervised Automation: rConfig Forge

The write boundary opens, under human approval. Policy-driven remediation and workflow automation, governed and supervised, never autonomous.

  • Introduction of rConfig Forge: A new automation and extensibility layer.
  • Policy-Based Auto-Remediation: Remediation of policy violations, proposed for human approval.
  • Automation Workbench: Dedicated interface for designing and executing workflows.
  • Compliance-Driven Automation: Moving from detection to supervised, approved action.
  • Self-Healing Networks: Event-driven, supervised remediation with a human in the loop on every change.
  • Reporting Engine: Richer datasets for compliance and audit visibility.
confidence:MediumTBD
v8.3
ShippedAIv8.3

Read-Only AI: GenAI and MCP

Conversational insight across configurations and native MCP access for agents and IDEs. Read-only and grounded: the AI reads and explains, nothing writes to the network.

  • AI Center: A dedicated dashboard and navigation for managing AI capabilities.
  • Configurable AI Providers: Connection testing, active provider selection and simplified management.
  • GenAI Assistant (Read-Only): Analyses configurations, explains drift, summarises configuration differences and recommends optimisations.
  • AI-Assisted Compliance Authoring: Generates compliance policies and rules.
  • MCP AI Server: Secure access tokens and server management for IDE and agent integration.
  • MCP Tool Library: Read-safe tools for searching configurations, devices, history, diffs and compliance status.
  • AI Governance: Privacy and transparency controls, with RBAC and audit visibility for every AI action.
v8.2.2
ShippedPlatformv8.2.2

TL1 Support, Snippet Credentials & Compliance Refinements

Carrier-grade TL1 device support, finer-grained snippet credential control, and a stricter compliance match method, backed by LDAP, NetBox and reporting reliability fixes.

  • TL1 Device Support: Native support for carrier-grade optical transport equipment.
  • Per-Device Snippet Credentials: RBAC-scoped credential sets for finer-grained access control.
  • Offline License Install: Licensing support for air-gapped and restricted environments.
  • Strict Compliance Matching: New match_code_block_strict policy method for per-interface and multi-interface checks.
  • Pinnable Navigation: A colourful pin keeps the left nav open when you want it.
  • Reliability Fixes: LDAP AD login, compliance reporting, SIE backups, scheduled tasks and NetBox sync corrections.
v8.2.1
ShippedAutomation & APIv8.2.1

Provisioning, Compliance & Smart Groups

Programmatic agent provisioning, post-backup compliance automation, and rule-driven device grouping.

  • Vector Agent Provisioning API: Token-authenticated REST endpoints ready for Ansible, Terraform and runbook automation.
  • Post-Backup Compliance: Automatic checks after every successful backup, with per-device status on a new Compliance tab.
  • Smart Groups: Reusable AND/OR/NOT device groupings, up to four levels deep, driving two new snippet and download task types.
  • API Documentation Generator: On-demand AI-friendly Markdown for the v1 and v2 REST APIs via a new Artisan command.
  • Notifications & Search Refinements: Per-user task notification toggles, full Config Search pagination, and broad UI polish.
v8.2
ShippedSecurityv8.2

Security & Ecosystem Expansion

Expanded integration ecosystem, sharper operator tooling, and hardened authentication.

  • NMS Integrations: Broader ecosystem support with CheckMK, PRTG, Infrahub and more.
  • Live Debug Console: In-browser troubleshooting with guided analysis.
  • Dashboard Customisation: Draggable cards with persisted per-user layouts.
  • Advanced Filtering: Multiselect and AND/OR logic across config search.
  • Data Export: Expanded compliance exports in JSON, CSV, HTML and PDF.
  • Auth Hardening: SAML2, Shibboleth and Sanctum migration.
v8.1
ShippedUsabilityv8.1

Usability & Intelligence

Focused on operator experience, data efficiency, and intelligent integrations.

  • Inventory UI Enhancements: Easier navigation for 10k+ device lists.
  • Config Retention Overhaul: Redesigned scalable storage engine.
  • Optimised Snippets: Reliability and reuse at scale.
  • MCP & GenAI: Foundation for intelligent analysis workflows.
  • Zabbix Integration: Tighter correlation between monitoring and config.
  • PHP 8.4 mandatory upgrade for enhanced performance and security. See https://www.php.net/supported-versions.php for details.
v8.0
ShippedPlatformv8.0

Platform Foundation & Scale

A landmark release focused on long-term scalability and performance.

  • Architecture Rewrite: Modern layered architecture removing technical debt.
  • Massive Scale: Benchmarked to 100,000 devices with 10x lower latency.
  • Modernised UI/UX: Complete visual overhaul for operational efficiency.
  • Change Pulse: Real-time visibility into configuration activity.
  • Enhanced Diff Engine: Multi-layer architecture for consistent accuracy.
status:deliveredReleased
Fine print

One caveat

Shipped, In Progress, and Planned items are commitments we stand behind. Dates and scope can still move for a critical security finding or an urgent customer ask, and enterprise partners directly shape what lands in the Under Evaluation track. We update this page every quarter, or sooner when plans change.

Shape the Future

Have a critical network automation use case? Let's build it.

Our roadmap isn't just a list, it's a partnership. If you need specific compliance checks, vendor integrations, or automation capabilities, tell us.

Change Log
Detected change
Diff analyzed
Rollback available
Safe
Scale
Devices100,000+
Queues ActiveReady
Compliance
ISO 27001
aligned
NIST
drift check
Policy
pass

We use cookies to improve this site. Cookie policy