Skip to main content
Data

Workflows

Self-hosted workflow automation that brings AI to your internal apps — on infrastructure you control.

AI-assisted creation. Visual block builder. Code-first SDK. Horizontally-scaled distributed execution on your infrastructure.

Your data. Your infrastructure. Full visibility.

Data Workflows runs on infrastructure you control. Every execution is tracked, every action is auditable, and your data stays on your systems.

Self-Hosted

AirGapped tier supports fully disconnected deployment for environments that cannot allow outbound traffic.

Forensic

audit trails on every execution, parameter, and output

Real-Time

observability with OpenTelemetry and Prometheus built in

Sovereign AI

Your identity. Your permissions. Your AI.

Every AI agent acting through Sovereign Workflows authenticates as the user it's helping — not as a shadow service account. Your permissions are the AI's permissions, your audit trail captures every call, and there is no parallel principal type to govern.

No shadow service accounts

Many AI-automation patterns rely on shared service accounts with ungoverned permissions. Sovereign agents borrow the session-owner's identity — there is nothing to over-grant, nothing to rotate, nothing to audit separately.

Different users, different AI experience

User A with Jira write access gets an assistant that can write to Jira. User B without it gets a read-only assistant — same model, same prompts, different effective capability. Automatically.

Forensic audit on every tool invocation

Every MCP tool call is logged with the session owner's identity, the tool invoked, and the outcome. The audit trail attributes the action to the human, not to "the AI".

Internal apps stay internal

Expose your proprietary on-prem apps as MCP tools without opening them to the public internet. Stored OAuth grants carry the user's authorization to downstream systems — no broad service tokens, no shared API keys.

Connector Generator

Stop waiting on a connector catalog

Most workflow tools sell you a pre-built connector catalog and leave you stranded when your internal app isn't on the list. Sovereign hands you the SDK and a generator — your connectors are never blocked on us, on a community, or on a third party.

OpenAPI in, connector out

Point the generator at an OpenAPI spec and it scaffolds a fully-typed C# connector — actions, credentials, fields, pagination, error handling. Drop the DLL into ConnectorHost and the actions show up in the visual builder.

LLM-enriched metadata

Hook an LLM into the generator to enrich action descriptions, parameter hints, and example values — so AI agents and human builders both get well-documented actions without you hand-writing the docs.

Open protocol, polyglot future

Build connectors against the C# SDK today — typed actions, credential helpers, field primitives, filtering and pagination. On the roadmap: an open connector protocol so anyone can drop in their own isolated ConnectorHost in any language, plus first-party SDKs in Java, Ruby, Python, JavaScript, and C++. With Claude, Gemini, or GPT in the loop, hand-written connectors are hours, not weeks.

Your sovereign apps, your sovereign workflows

The proprietary apps your team already runs on-prem become first-class steps in your workflows — data can stay inside the network, or feed downstream systems, on your terms.

How It Works

Three ways to build. One powerful engine.

Whether you prefer natural language, a visual editor, or raw JSON Data Workflows meets you where you are.

Describe It

Tell the AI assistant what you want to automate in plain language. It asks clarifying questions, then builds the workflow for you. No learning curve required.

Build It Visually

Drag and drop steps in the block-based workflow builder. Connect triggers, actions, and conditions with a visual editor that makes complex automations intuitive.

Write It as Code

Define workflows as declarative JSON with full schema validation. Export definitions for version control, code review, and CI/CD integration.

From creation to execution

Step 1

Create

Describe it, drag-and-drop it, or write it. Choose the approach that fits your team.

Step 2

Validate

The orchestrator validates your workflow against strict schemas and activates it.

Step 3

Trigger

Fire via webhook, schedule, event, or manual API call. Workflows start instantly.

Step 4

Execute & Observe

Workflows run reliably across your network with full visibility into each action's progress and results.

Platform Capabilities

Built for enterprise. Designed for everyone.

Self-Hosted by Default

Deploy on infrastructure you control — on-prem, private cloud, or fully disconnected via the AirGapped tier. Architected for data-residency-strict and regulated environments where SaaS is not an option.

Enterprise Observability

OpenTelemetry tracing and Prometheus metrics endpoints are built in, ready to plug into your existing observability stack. Structured logging and per-step execution visibility throughout.

Deep Audit Trails

Execution audit trails capture inputs, outputs, and parameters for every workflow run. Tenant isolation and role-based access control come standard; credentials are stored encrypted.

Flexible Authentication

Four authentication modes to fit your environment: OIDC federation with your identity provider, API key authentication, service principal credentials, or static token configuration.

AI That Can't Go Rogue

Pull LLMs into your automations for classification, summarization, and decisions — with guardrails that actually stick: full audit trails, retry logic, and human-in-the-loop checkpoints. AI you can ship without crossing your fingers.

Enterprise Scale

Built on .NET and PostgreSQL for production-grade performance. Distributed infrastructure scales automatically to handle high concurrent workloads.

Granular Retry

Retry individual failed steps without re-running entire workflows. Exponential backoff with jitter, configurable per action.

Composable Subworkflows

Build complex automations from reusable components. Nest subworkflows with full lineage tracking and hierarchy management.

Multiple Trigger Types

Kick off workflows via webhooks, cron schedules, internal events, or direct API calls. Combine triggers with conditional logic for precise automation control.

Deployment

Run it your way

From a single Docker Compose stack to a fully disconnected air-gapped environment. You choose how and where to deploy.

Self-Hosted

Spin up with Docker Compose in minutes. Scale to Kubernetes with Helm charts when you need production-grade horizontal scaling. Full control over data, infrastructure, and networking — on your hardware, in your private cloud, or wherever you run.

AirGapped

Designed for environments that cannot allow outbound traffic. The AirGapped tier validates entirely offline — no Portal heartbeat, no callbacks. Built for classified, ITAR, and disconnected operational deployments.

Managed Cloud [v1]

Let us handle the infrastructure. Dedicated instances; SLA terms available at launch. Focus on building workflows, not managing servers.

Editions

Editions for every deployment shape

Sovereign Workflows ships in capacity-based editions. Higher editions unlock Sovereign-AI features, ConnectorGen, audit infrastructure, and air-gap-grade deployment.

Workflows is in private alpha. Edition pricing will be announced ahead of launch. We're not accepting orders today — the matrix below is here so you can see what to expect at each edition.

Starter
Professional
Enterprise
Air-Gapped
Managed
Connectors & Sovereign AI
Core Connector Marketplace
Professional Connectors
LLM / AI Chat Steps
Add-on
Add-on
AI Workflow Builder
Add-on
Add-on
MCP / Agentic Workflows
Add-on
Add-on
Identity-Attributed Agent Auth
Per-Session MCP Tool Allowlist
Add-on
Per-Action MCP Authorization
Roadmap
Roadmap
Roadmap
Roadmap
Roadmap
ConnectorGen (Self-Service)
Connector SDK
Capacity
Concurrent Workflows
10
250
Unlimited
Unlimited
Configurable
Concurrent Steps
10
500
Unlimited
Unlimited
Configurable
Execution History Retention
30 days
90 days
Configurable
Configurable
Configurable
Engine & Execution
Core Workflow Engine
Visual Workflow Builder
Webhook Triggers
Retry & Circuit Breakers
Scheduled (Cron) Triggers
Fan-Out / Subworkflows
Priority Queues
Horizontal Scaling
Security & Compliance
Bypass & Local Auth
OIDC Federation
Audit Logging
Audit Export
Offline License (No Heartbeat)
Observability
Execution History & Logs
OpenTelemetry Tracing
Prometheus Metrics
Support & Services
Documentation & Community
Email Support
SLA Support
Dedicated Support Engineer

Ready to automate on your terms?

Keep your data on infrastructure you control. Bring AI to your internal apps without exposing them to the public internet. Build workflows the way that works for your team.