Move from alert to evidence.
Trace crash loops, degraded rollouts, failed jobs, noisy logs, and cloud symptoms across the systems already in your path.
Investigate infrastructure, diagnose incidents, and execute tightly scoped remediation through fail-closed policy, least-privilege credentials, budget stop-losses, and verifiable audit chains.
Why is api-0 crash-looping in web?
Container OOMKilled. JVM heap is 22% above the workload memory limit.
The agent gets enough context to form a real diagnosis. Authority is granted separately, for a specific action, target, environment, and amount of time.
Trace crash loops, degraded rollouts, failed jobs, noisy logs, and cloud symptoms across the systems already in your path.
Inspect GitHub Actions runs, connect the failing job to source, and keep remediation inside a reviewable pull request.
Investigate AWS, Google Cloud, and Azure with curated command families while provider-wide deployment and IAM changes stay denied.
Apply, roll out, scale, or roll back only when policy, credential scope, dry-run, approval, and an expiring capability all agree.
A model can ask. It cannot grant itself a credential, widen a target allowlist, bypass a policy deny, disable a dry run, or approve its own production change.
Natural-language intent enters through an identity-aware interface.
Call, tool, recursion, time, and USD stop-losses are checked.
Unknown tools, targets, flags, and configuration fail closed.
One scoped credential family is selected for the winning rule.
A structured argv request runs with shell expansion disabled.
Decision, execution, cost, and resolution events join one hash chain.
Missing configuration, unpriced models, unknown tools, unmatched commands, and unavailable credentials refuse to boot or deny the action.
Read the policy pipelinePer-run calls, tool invocations, recursion, wall time, and USD cost meet per-principal daily budgets and hard executor timeouts.
Understand budgetsRemote executors split credentials by environment and read/write channel, then accept only signed decisions that match their fixed identity.
Inspect the boundaryEvery interface enters the same gateway, budget, policy, credential, approval, and audit path. There is no “convenient” side door.
Stream investigations from a local REPL with per-turn cost and policy feedback.
Private agent chat, live runs, approvals, policy decisions, spend, and audit integrity.
Thread-aware chat-ops with identity mapping and the same escalation boundary.
Receive Alertmanager and GitHub events through authenticated, deduplicated routes.
Run drift, certificate, backup, and hygiene checks with fixed anti-overlap controls.
Keep write credentials inside isolated environment-and-channel workers.
The reasoning loop is separated from execution, policy, credentials, state, and audit. That keeps integrations composable without turning the model into a trusted control plane.
Explore the architectureInstall the released tool, initialize a workspace, provision a secrets-denied Kubernetes identity, then choose the contexts the agent may see.
uv tool install "opendevops[checkpoint,ssh]==0.1.2"opendevops config check