Start with the
current boundary
Core EDR is advanced alpha, AutoXDR is pilot roadmap scope, AI Runtime Security is experimental, and managed App Guard is planned for design partners.
Browse by Category
Getting Started
Evaluate the advanced-alpha Core EDR architecture and first self-hosted lab endpoint.
5 docsAgent
Deploy, enroll, and configure Windows and Linux endpoint agents.
5 docsConsole
Use the GUI, dashboards, alerts, investigations, Network Insight, and live response workflows.
6 docsDetection
YARA, Sigma, MITRE coverage, NDR, threat intelligence, and response actions.
6 docsWeb3 Proof
Optional Solana attestations, public verification, bounties, and self-hosted privacy.
5 docsSecurity
Privacy-safe attestations, mTLS, open-source risk, and trust boundaries.
3 docsRoadmap
Portfolio lanes, maturity states, offer boundaries, and known production gaps.
3 docsAPI
Public API references for agents, alerts, events, response, and webhooks.
7 docsPopular Documentation
Most viewed guides to get you started quickly
Portfolio and Current Scope
Start with the maturity, licensing and claim boundary for every lane
Read more Getting StartedCapabilities and Limitations
Current Windows, Linux, Network Insight, response, and attestation scope
Read more RoadmapCurrent Scope
What Tamandua can claim today and what remains roadmap
Read more RoadmapKnown Production Gaps
Validation gates required before stronger production claims
Read more AgentAgent Installation
Deploy agents across Windows and Linux endpoints
Read more DetectionDetection Rules
Create and manage YARA, Sigma, and NDR detection workflows
Read more Web3 ProofSolana Attestations
How Tamandua publishes proof without leaking endpoint data
Read more