Building the future of cloud intelligence.

Platform Evolution

Follow the evolution of TattvaLens as we expand cloud intelligence, infrastructure analysis, and safe remediation automation.

Current Versionv1.0
ArchitectureDeterministic Core
Capabilities14 Released

Current Platform Capabilities

What TattvaLens provides today to secure and optimize your AWS infrastructure.

Assessment

  • Agentless AWS Connection
  • Read-only IAM
  • Cloud Discovery
  • Inventory

Intelligence

  • Resource Assessment
  • Relationship Assessment
  • Security Findings
  • Cost Findings
  • Compliance Mapping

Optimization

  • Risk Scoring
  • Prioritization
  • Recommendations
  • Executive Summary
  • Remediation Plan

Architecture Evolution

How the platform transitions from basic discovery to full automation.

AWS
Agentless Discovery
Relationship Mapping
Optimization Engine
Infrastructure Graph
Governance Intelligence
Automation Engine

Actively Building

Features and capabilities currently in our engineering pipeline.

Cost-Delta & ROI Measurement

In Development
The Problem

FinOps and leadership struggle to quantify verified financial savings and progress between scan runs.

The Solution

Deterministic scan-over-scan delta engine measuring before-and-after financial and risk changes.

Customer Value

Immediate, auditable ROI quantification for every completed remediation.

Azure Support

In Development
The Problem

Enterprises with multi-cloud environments lack a unified assessment across AWS and Azure.

The Solution

Native Azure agentless assessment integrating directly with Azure Resource Manager (ARM).

Customer Value

Single pane of glass for multi-cloud security, cost, and governance intelligence.

GCP Support

In Development
The Problem

Organizations using Google Cloud Platform need agentless assessment capabilities.

The Solution

Multi-cloud assessment supporting GCP Cloud Asset APIs and resource hierarchy.

Customer Value

Complete visibility into GCP infrastructure risks and waste.

Collector Family Expansion

In Development
The Problem

Broad cloud footprints require continuous coverage expansion without complex pipeline changes.

The Solution

Extending the deterministic rule registry across new compute, database, and container collector families.

Customer Value

Deeper resource intelligence coverage while preserving zero-hallucination determinism.

RI & Savings Plan Gap Analysis

Planned
The Problem

Uncommitted usage and suboptimal commitment tiers lead to substantial cloud overspending.

The Solution

Algorithmic commitment gap analysis matching actual workload demand against Reserved Instances and Savings Plans.

Customer Value

Actionable commitment coverage recommendations to maximize FinOps efficiency.

Interactive Dependency Graph

Planned
The Problem

Understanding complex cloud dependencies is difficult with traditional flat lists and tables.

The Solution

Deterministic infrastructure explorer mapping relationships across IAM, networking, and compute.

Customer Value

Instantly trace attack paths, blast radius, and cost dependencies visually.

Compliance Framework Mapping

Planned
The Problem

Manual compliance audits against CIS, SOC 2, and ISO 27001 are slow and prone to human error.

The Solution

Automated mapping of deterministic posture rules directly to compliance control matrices.

Customer Value

Continuous, audit-ready evidence and compliance posture tracking.

Ownership & Context Resolution

Planned
The Problem

Untagged resources make it impossible to allocate costs or assign security ownership to teams.

The Solution

Context resolution engine resolving ownership, environment tiers, and tagging heuristics.

Customer Value

Every finding maps directly to a responsible owner and approver.

Release History

The detailed timeline of platform releases and upcoming milestones.

v1.3

Vision
Action Intelligence & Safe Remediation
Added
  • •Validation-first remediation workflows
  • •Human-in-the-loop approval gates and rollback plans
  • •Deterministic policy governance engine
  • •Automated IaC and API orchestration

v1.2

Planned
Context, Graphs & Compliance
Added
  • •Interactive infrastructure dependency graph
  • •Deterministic blast radius impact analysis
  • •Automated ownership & context resolution
  • •Compliance framework mapping (CIS, SOC 2, ISO 27001)
  • •RI & Savings Plan commitment gap analysis

v1.1

In Development
Multi-Cloud & ROI Quantification
Added
  • •Azure native ARM assessment
  • •GCP Cloud Asset API assessment
  • •Deterministic scan-over-scan cost-delta measurement
  • •Expanded collector families for databases & containers
Improved
  • •Multi-cloud unified scoring algorithms
  • •Executive ROI quantification reports

v1.0

Released
Deterministic Core & LENS Pipeline
Added
  • •Agentless AWS connection via sts:AssumeRole
  • •LENS engine: Bootstrap, Ingestion, Enrichment, Optimization
  • •Deterministic rule evaluation across Cost, Security, Governance
  • •Structured scan inventory and decision-ready recommendations

Future Vision

Long-term principles guiding our platform expansion.

Safe Remediation & Approval

Validation-first remediation workflows with required approvers and rollback specifications.

Principle

Decision-ready actions executed safely with complete human-in-the-loop control.

Automation Orchestration

Execute approved actions automatically across your infrastructure via native APIs and IaC.

Principle

Reduce MTTR (Mean Time To Remediate) to zero for verified safe fixes.

Programmable Policy Engine

Organization-wide governance using custom, deterministic programmable policies.

Principle

Ensure every cloud resource adheres to your specific company standards.