Sovereign Platform is in pre-launch alpha.
Not yet available to purchase. Sign up for our mailing list for upcoming launch dates.
Workflows
Self-hosted workflow automation that brings AI to your internal apps — on infrastructure you control.
AI-assisted creation. Visual block builder. Code-first SDK. Horizontally-scaled distributed execution on your infrastructure.
Your data. Your infrastructure. Full visibility.
Data Workflows runs on infrastructure you control. Every execution is tracked, every action is auditable, and your data stays on your systems.
Self-Hosted
AirGapped tier supports fully disconnected deployment for environments that cannot allow outbound traffic.
Forensic
audit trails on every execution, parameter, and output
Real-Time
observability with OpenTelemetry and Prometheus built in
Your identity. Your permissions. Your AI.
Every AI agent acting through Sovereign Workflows authenticates as the user it's helping — not as a shadow service account. Your permissions are the AI's permissions, your audit trail captures every call, and there is no parallel principal type to govern.
No shadow service accounts
Many AI-automation patterns rely on shared service accounts with ungoverned permissions. Sovereign agents borrow the session-owner's identity — there is nothing to over-grant, nothing to rotate, nothing to audit separately.
Different users, different AI experience
User A with Jira write access gets an assistant that can write to Jira. User B without it gets a read-only assistant — same model, same prompts, different effective capability. Automatically.
Forensic audit on every tool invocation
Every MCP tool call is logged with the session owner's identity, the tool invoked, and the outcome. The audit trail attributes the action to the human, not to "the AI".
Internal apps stay internal
Expose your proprietary on-prem apps as MCP tools without opening them to the public internet. Stored OAuth grants carry the user's authorization to downstream systems — no broad service tokens, no shared API keys.
Stop waiting on a connector catalog
Most workflow tools sell you a pre-built connector catalog and leave you stranded when your internal app isn't on the list. Sovereign hands you the SDK and a generator — your connectors are never blocked on us, on a community, or on a third party.
OpenAPI in, connector out
Point the generator at an OpenAPI spec and it scaffolds a fully-typed C# connector — actions, credentials, fields, pagination, error handling. Drop the DLL into ConnectorHost and the actions show up in the visual builder.
LLM-enriched metadata
Hook an LLM into the generator to enrich action descriptions, parameter hints, and example values — so AI agents and human builders both get well-documented actions without you hand-writing the docs.
Open protocol, polyglot future
Build connectors against the C# SDK today — typed actions, credential helpers, field primitives, filtering and pagination. On the roadmap: an open connector protocol so anyone can drop in their own isolated ConnectorHost in any language, plus first-party SDKs in Java, Ruby, Python, JavaScript, and C++. With Claude, Gemini, or GPT in the loop, hand-written connectors are hours, not weeks.
Your sovereign apps, your sovereign workflows
The proprietary apps your team already runs on-prem become first-class steps in your workflows — data can stay inside the network, or feed downstream systems, on your terms.
Three ways to build. One powerful engine.
Whether you prefer natural language, a visual editor, or raw JSON Data Workflows meets you where you are.
Describe It
Tell the AI assistant what you want to automate in plain language. It asks clarifying questions, then builds the workflow for you. No learning curve required.
Build It Visually
Drag and drop steps in the block-based workflow builder. Connect triggers, actions, and conditions with a visual editor that makes complex automations intuitive.
Write It as Code
Define workflows as declarative JSON with full schema validation. Export definitions for version control, code review, and CI/CD integration.
From creation to execution
Create
Describe it, drag-and-drop it, or write it. Choose the approach that fits your team.
Validate
The orchestrator validates your workflow against strict schemas and activates it.
Trigger
Fire via webhook, schedule, event, or manual API call. Workflows start instantly.
Execute & Observe
Workflows run reliably across your network with full visibility into each action's progress and results.
Built for enterprise. Designed for everyone.
Self-Hosted by Default
Deploy on infrastructure you control — on-prem, private cloud, or fully disconnected via the AirGapped tier. Architected for data-residency-strict and regulated environments where SaaS is not an option.
Enterprise Observability
OpenTelemetry tracing and Prometheus metrics endpoints are built in, ready to plug into your existing observability stack. Structured logging and per-step execution visibility throughout.
Deep Audit Trails
Execution audit trails capture inputs, outputs, and parameters for every workflow run. Tenant isolation and role-based access control come standard; credentials are stored encrypted.
Flexible Authentication
Four authentication modes to fit your environment: OIDC federation with your identity provider, API key authentication, service principal credentials, or static token configuration.
AI That Can't Go Rogue
Pull LLMs into your automations for classification, summarization, and decisions — with guardrails that actually stick: full audit trails, retry logic, and human-in-the-loop checkpoints. AI you can ship without crossing your fingers.
Enterprise Scale
Built on .NET and PostgreSQL for production-grade performance. Distributed infrastructure scales automatically to handle high concurrent workloads.
Granular Retry
Retry individual failed steps without re-running entire workflows. Exponential backoff with jitter, configurable per action.
Composable Subworkflows
Build complex automations from reusable components. Nest subworkflows with full lineage tracking and hierarchy management.
Multiple Trigger Types
Kick off workflows via webhooks, cron schedules, internal events, or direct API calls. Combine triggers with conditional logic for precise automation control.
Run it your way
From a single Docker Compose stack to a fully disconnected air-gapped environment. You choose how and where to deploy.
Self-Hosted
Spin up with Docker Compose in minutes. Scale to Kubernetes with Helm charts when you need production-grade horizontal scaling. Full control over data, infrastructure, and networking — on your hardware, in your private cloud, or wherever you run.
AirGapped
Designed for environments that cannot allow outbound traffic. The AirGapped tier validates entirely offline — no Portal heartbeat, no callbacks. Built for classified, ITAR, and disconnected operational deployments.
Managed Cloud [v1]
Let us handle the infrastructure. Dedicated instances; SLA terms available at launch. Focus on building workflows, not managing servers.
Editions for every deployment shape
Sovereign Workflows ships in capacity-based editions. Higher editions unlock Sovereign-AI features, ConnectorGen, audit infrastructure, and air-gap-grade deployment.
Workflows is in private alpha. Edition pricing will be announced ahead of launch. We're not accepting orders today — the matrix below is here so you can see what to expect at each edition.
Starter
Capacity-based
Professional
Capacity-based
Enterprise
Capacity-based
Air-Gapped
Capacity-based
Managed
Capacity-based
Ready to automate on your terms?
Keep your data on infrastructure you control. Bring AI to your internal apps without exposing them to the public internet. Build workflows the way that works for your team.