Roadmap, from the same statuses the product reads.
This page is generated from the capability catalogue that the dashboard, the REST API and connected agents read, so it cannot say something different from the product itself.
How to read it
Available means generally usable in this beta. In private beta means working for invited workspaces, with limits stated. Partly available means some of it works on this server. Planned is intent, not a date. Waiting on an owner decision names the setup or purchase that blocks it. Deprecated carries a removal date under the deprecation policy.
Agents read the same list as JSON from /api/v1/roadmap or as Markdown from /roadmap.md.
Current statuses
Available
- Static ZIP hosting
availableInspect, publish, view release evidence and roll back. - REST API and CLI
availableScoped 30-day tokens, project and release operations. - Custom domains
availableTXT ownership and DNS-only IPv4 routing checks activate HTTPS automatically, within the workspace’s recorded domain allowance.
In private beta
- Website file manager
private_betaBrowse, search, download, edit, upload, rename and remove files in a new inspected version. No live-file overwrite. Browser sessions only; individual edits/downloads up to 512 KiB, 2 MiB of changes per save. - Private release previews
private_betaPrepare without changing the live site. Share an expiring bearer link, revoke it or publish the preview after checking it. - Recoverable release cleanup
private_betaRetire unused releases with seven-day recovery from Backups, REST, CLI or MCP release_retire. Selected releases are protected; original ZIPs and audit history remain. - MCP tools
private_betaBearer-token clients supported. Browser approval is required for agent publishing. - Domain forwarding and checks
private_betaPrimary domain with optional alias redirects, HTTPS forwarding domains, registry expiry details and email DNS checks with suggested records. DNS records are not edited for you. - Public GitHub import
private_betaCommit-pinned public repository import with the same archive safety checks. Built static files only; no build execution, private repositories or automatic push deploys yet. - Static contact forms
private_betaDeclared text and email fields from a published static website arrive in a private browser-session inbox with read, archive and CSV export. No file uploads or outgoing email. - Attention feed
private_betaFailed releases, blocked uploads, domain and HTTPS problems, pending approvals and usage above 80% in one list, plus unread message counts in the dashboard. REST, MCP and CLI; read-only. - Build plan
private_betaFramework, package manager, suggested build command and output folder from the latest inspection. Nothing is built or run on this host. - Direct assistant files
private_betaMCP, HTTPS API and CLI accept up to 50 built files / 512 KiB with archive, credential and quota checks. Stores a private inspection first; MCP publication still requires dashboard approval. - Security scanner
private_betaKnown-vulnerable JavaScript libraries, miners, webshells, hidden frames and off-site password forms are checked at upload, on demand and daily for live releases. Signature checks; not proof of safety. - Original ZIP cleanup
private_betaAdmin-confirmed unused-upload removal, seven-day recovery and live/retained-release protection. Storage is released after cleanup; history and prior encrypted backups are retained. - Visitor analytics
private_betaCookie-free counts for live sites: daily unique visitors, page views, bandwidth, status codes, bot share, top pages and referrer hosts. No raw IP addresses or user agents are stored. Country from DB-IP Lite when installed. Owners can turn counting off per site. - Site access rules
private_betaPer-site password protection, IP allow and deny lists, hotlink protection, AI crawler policy, maintenance mode, directory listing, custom error pages and generated llms.txt. Private previews are unaffected. - Help and support requests
private_betaLearn more links on every dashboard panel, guide search over the guides and their Markdown twins, and support requests from the dashboard or an assistant hand-off. Request IDs, the project and recent findings are attached only with your consent. Replies appear in the dashboard. - OAuth assistant connections
private_betaPKCE sign-in, explicit workspace permissions, rotating tokens and revocation. Individual AI-client compatibility is being validated. - Workspace team access
private_betaOwner-issued 72-hour invitation links, role controls and revocation. Timed memberships and invitations remain controlled by owners. Optional account mail depends on verified addresses and configured outbound service.
Partly available
- Support replies by email
partialOptional verified-primary copies use the sealed Microsoft Graph mail queue when the provider and outbound dispatch are enabled. In-app replies remain available. Queued and accepted do not prove delivery.
Planned
- Dynamic Node/Python apps
plannedRequires dedicated isolated workers before customer execution. - Managed databases and email
plannedProvider setup, provisioning and backup testing remain.
Waiting on an owner decision
- Public status page
blockedNeeds a status page hosted away from this server and an outside check location (owner choice). No same-server status is shown. - Paid subscriptions
blockedBilling provider account and prices require owner setup.
Deprecated
None.
Ask about an item
Signed-in users can ask through a support request in Help & support. Everyone else can write to the support address below. Help, status and support explains what a request includes.
Explore the product and guides
Access is invitation-only. No payments are collected during the private beta. Sign in to your invited workspace.