Skip to content

Product alignment — which component ships in which product

Product alignment — which component ships in which product

Section titled “Product alignment — which component ships in which product”

Mapping the architecture to the three commercial products (Runtime / Control / Intelligence). Every component lives in one of these products. This is the investor / pricing / go-to-market view.

The three products from Strategy Memo v3 §11:

ProductBuyerMotionPricingStatus
Runtime (open-core)DeveloperViral, pip installFree foreverMCS Q2 2026
Control (SaaS + on-prem)CISO / Head of AI / GRCEnterprise salePer governed agent / monthQ3-Q4 2026
Intelligence (data moat)Existing Control customerUpsellTelemetry volume bands2027

The free, viral, developer-installed product. Everything required to run a governed agent on a single machine without a server-side dashboard.

ComponentWhy RuntimeStatus
Compiled Policy schemaCanonical IR; ships with the SDKconcept (Q3)
Policy compilerCompiles Compiled Policy from Policy + sandbox-spec; runs in Runtime mode against local Policy fileconcept (Q3)
Cascade mergerMerges org/project/agent levels; degenerates to single-level for solo Runtime useconcept (Q3)
Live policy push channelListens for updates; works against either local Policy file or remote Control planeconcept (Q3)
Operator CLI tappassAuthoring + provisioning surface; works locally or against Control planeconcept (Q3)
Host runtime CLI tappass-hostReceives sync; applies layered config; launches agentconcept (Q3)
Agent client SDK tappass-agentThe library every agent importsconcept (Q3)
Upstream tool proxy / MCP forwardMCP-side enforcement; ships with Runtimeconcept (Q3)
Resource access checkerPipeline step; ships with Runtimeconcept (Q3)
Runaway agent stopperPipeline step; ships with Runtimeconcept (Q3)
Approved tool-server listPer-org MCP registry; works in Runtime mode against local configconcept (Q3)
Kernel ring applierOpenShell + Landlock + L7 networkpartial (OpenShell shipped)
Harness ring appliersettings.json writer + per-runtime adaptersconcept (Q3)
Interpreter ring applierMonty / V8 / Wasmtime profilesconcept (Q4)
LLM gateway (cross-cutting)OAI / Anthropic / MCP / LiteLLM✅ shipped
OpenShell sandbox + nonoKernel-ring primitives✅ shipped
32-step pipelineDetection / capability tokens / audit✅ shipped
Hash-chain auditIntegrity verification✅ shipped
ES256 mandatesPer-allow signing✅ shipped
Authoring resolver (intent-to-policy)Function/category/concern/capability collapse to pipeline✅ shipped on main

Runtime promise: every part of governance up to and including local enforcement works without a Control plane. Rego policy file → 5 enforcement positions → agent runs.

The commercial product. CISO / GRC pays for it. Adds central authoring, multi-machine sync, audit dashboards, marketplace, compliance reports.

ComponentWhy ControlStatus
Onboarding wizardClick-driven Policy authoring for non-engineersconcept (Q4)
EU AI Act compliance packProcurement-defensible; certified once, inheritedconcept (Q3)
OWASP LLM Top 10 packSameconcept (Q3)
GDPR / PCI-DSS / HIPAA / NIS2 / DORA packsSameplanned (2027)
Sandbox registry / state storeMulti-machine "where are my agents?" viewconcept (Q3)
ReconcilerDrift detection across the fleetconcept (Q3)
Audit dashboardVisual trace timelines, denial reasons, replayconcept (Q3)
Authoring UX (GitOps, simulation, shadow mode)Strategy memo §09 vector 05concept (Q3-Q4)
Marketplace v1 (3 certified policy packs)Switching-cost lock-inconcept (Q4)
Pre-deployment evaluatorRuns probe suite against agent before deploy; CI integrationconcept (Q4)
OWASP LLM probe libraryProbe content for the evaluatorconcept (Q4)
SOC 2 Type 1 auditProcurement filter for enterprise / EU buyerscalendar (Q3-Q4)
Public trust page0-training, residency, encryption, sub-processorsconcept (Q3)

Control promise: one Policy authored centrally, applied everywhere your agents run, audited in one dashboard, with auditor-ready compliance reports out of the box.

The 2027 product. Cross-customer behavioral intelligence. Only valuable once Runtime + Control reach scale.

ComponentWhy IntelligenceStatus
Behavior drift monitorProduction behavior vs. baseline; cross-customer pattern detectionconcept (Q4 single-tenant; Intelligence layer 2027)
Cross-customer anomaly detection"Your agent is the only one in our network using this tool pattern"planned (2027)
Industry benchmarks"Peer fintechs deny this tool by default"planned (2027)
MCP / skill vulnerability disclosurePush policy update within minutes of disclosed flawplanned (2027)
Behavioral baselines per industryCompounding from telemetry scaleplanned (2027)

Intelligence promise: the security signal no single customer can build alone. The longer we run, the sharper our cross-customer signal becomes.


Runtime is free. Control is the pricing surface. Intelligence is upsell.

A buyer asking "what does this cost?" gets:

  1. Runtime: $0
  2. Control: per governed agent / month, tiered, on-prem surcharge
  3. Intelligence: telemetry-band add-on, opt-in, available 2027

Three flywheels, one substrate:

Runtime (free, viral)
│ every install = lead for Control
│ every install = telemetry for Intelligence
Control (per-agent SaaS)
│ scale enables
Intelligence (cross-customer signal)
│ retention + pricing leverage
compounding moat

Within each product, what to ship first:

  • Runtime Q2 2026 critical path = Compiled Policy + 2 providers across 2 rings + push/pull/reconcile + state store. The MCS. Nothing else gets prioritized over this.
  • Control Q3-Q4 2026 critical path = Authoring UX + audit dashboard + SOC 2 Type 1 + 2 compliance packs.
  • Intelligence 2027 = single-tenant drift first; cross-tenant after Q4.
BuyerFirst contact viaConversion path
Solo developerpip install tappass→ joins team → buys Control
Mid-market CTOCompatibility matrix → Control trial→ SOC 2 close → Control contract
Enterprise CISOCompliance pack → on-prem Control demo→ procurement → on-prem Control + Intelligence opt-in
Vendor (e.g. Collibra)Reference architecture → Control resale / partnership→ vendor offers TapPass-governed runtime to their customers
  • Never gate core enforcement. Runtime ships every enforcement position; Control adds the operator/CISO experience.
  • Open-core distribution flywheel. Free Runtime is what makes a paid Control competitor unable to catch up (no flywheel).
  • Charge for outcomes, not features. Control's pricing is per-agent because that's what scales with customer value.

The three products give the roadmap a coherent strategic spine:

QuarterProduct focus
Q2 2026Runtime MCS — the four-piece v1 deliverable
Q3 2026Runtime extended (more providers) + Control v1 (authoring, dashboard, SOC 2 prep)
Q4 2026Control v1 GA (compliance packs, marketplace, eval, drift) + MCP broker + chat-bot surfaces
Q1 2027Intelligence alpha + Federation + Compliance v2

See roadmap/2026-h2.md for week-level detail.