3 min read Updated July 23, 2026

Current Scope and Claim Boundary

The generated readiness authority currently says product_ready=false and external_claim_allowed=false. Tamandua has working code, but working code is not general availability, production validation or vendor parity.

Core EDR

State: Available code / Advanced alpha.

Selected agent, server and community components are published under identified open-source licenses for self-hosted evaluation. Open source is component-scoped: it does not automatically include every repository, service, model, mobile artifact or future product.

AutoXDR

State: Pilot.

AutoXDR is the shared correlation, investigation and supervised-response plane. Queueing, approval, RBAC, audit, timeout, rollback and dry-run behavior remain promotion gates. Do not describe it as production-autonomous response.

AI Runtime Security

State: Experimental.

AI Runtime Security is the capability name; AIDR is the market category term. It is a subordinate AutoXDR profile for AI sessions, tools, MCP chains and artifacts. It does not create a separate incident system or inherit mature product claims.

App Guard and mobile

State: Planned / Design partner.

App Guard is intended as a closed managed commercial service, without an open-source commitment. The planned engagement is app-specific: a qualified Android APK/build first, with future iOS and enterprise delivery after evidence gates.

Not available today:

  • no operational upload-and-protect or no-code wrapping;
  • no protected APK/AAB/IPA download from this site;
  • no automatic SDK injection, customer app resigning or store-ready guarantee;
  • no GA, production, Appdome, Verimatrix or Guardsquare parity claim;
  • no phone-wide mobile EDR claim.

Promotion requires:

  • G1: signed physical ingestion and live anti-replay;
  • G2: hostile and clean/goodware efficacy evidence;
  • G3: native iOS XCFramework/binding evidence;
  • G4: release protection packet with signing, hardening and provenance;
  • G5: 100% of scenario/platform pairs classified as detected, degraded, unsupported or bypassed, with no omitted failures; this does not establish vendor parity.

Offer modes

ModeAvailabilityBoundary
CommunityAvailable for identified componentsAdvanced-alpha evaluation and contribution
Limited FreePlannedQuotas, eligibility and included capabilities TBD; no free-forever promise
ProPlannedPackaging, pricing and service levels TBD
EnterpriseNegotiatedQualification, deployment, evidence, support and App Guard terms are scoped per engagement

Offer modes are not maturity labels. Enterprise negotiation does not turn experimental behavior into a production claim.