Skip to content

Roadmap

Mohammed Danish Amber edited this page Oct 5, 2026 · 1 revision

Roadmap

Current: the open-source engine — Attacker Modes attacker, per-run canary proof, record-only mirror, full Scenarios, MCP + HTTP targets, HTML/JSON report, sandbox-inert fixture.

Planned / under consideration:

  • Detection validation (SIEM/EDR). Correlate each proven attack step with the defender's telemetry (e.g. Wazuh) using the Evidence Schema (scenario_id, target_host, ts) to answer "which agent attacks did the SOC miss?" — a detection-gap report.
  • More targets & connectors. Richer MCP coverage, agent-framework adapters.
  • Continuous / CI mode. Scheduling, retest, trend over time.
  • Agent attack graph. Untrusted input → tools → identity/token reach → data/actions.
  • Enterprise edition. Dashboard, multi-tenancy/MSSP, compliance evidence packs.

Ideas and contributions welcome — see Contributing. Track releases: https://github.com/mddanish/Aphasia-Agentry/releases

Clone this wiki locally