๐Ÿ›๏ธ Deloitte Portfolio & Program Management

Live Dashboard Updated: 2026-03-18 Source: Linear + #eng-customer-deloitte

Executive Overview

Total Issues
96
Across 6 workstreams
Open / Active
42
44% of portfolio
Completed
54
56% completion rate
Workstreams
6
2 complete ยท 2 mostly done ยท 1 active ยท 1 new
High Priority Open
19
Requires immediate attention
Unassigned
39
Need squad allocation
Portfolio Completion
56%
Done (54)
Active (42)
Workstream Health
Cyber
J&J
POC
ERP
NetOps
Meta
Program Status
YELLOW
Active blockers pre-RSA
๐Ÿ” Key Health Questions โ€” Reporting Period: Mar 12โ€“19, 2026
QuestionStatusExplanation
Is the team behind schedule?โš ๏ธ PossibleJira Data Center integration critical for RSA demos โ€” only days to fix. Agent reliability at 15%.
Problems preventing cycle goal?๐Ÿ”ด YesJira DC auth broken (basic auth vs API token mismatch). ThreatConnect tool calls failing with validation errors. Both block Cyber workflows.
Foresee issues for next period?โš ๏ธ PossibleRSA Conference (next week) will reduce engineering bandwidth. Deloitte expects RSA in-person review with fixes ready.
Unscheduled tasks this cycle?๐Ÿ”ด YesJira DC debugging, ThreatConnect parameter investigation, SMK 1.0.3.1 release prep โ€” all unplanned work.
Have any estimates changed?๐ŸŸข Noโ€”
Tasks added or deleted this cycle?๐Ÿ”ด Yes4 new issues from Mar 17 Cyber Weekly + Jira DC and ThreatConnect escalations from today's call.
Technical problems encountered?๐Ÿ”ด YesJira DC: auth flow assumes API token when using basic auth. ThreatConnect: MCP parameter descriptions causing validation errors. Fix may be in main but not in SMK release cut.
Resource problems?โš ๏ธ PossibleMeta Global Ops fully unresourced (10 backlog items, 0 assigned). RSA week reduces available engineering. 25/25 open items across workstreams unassigned.
โœ… Accomplishments This Period Week of Mar 12โ€“19
AccomplishmentOwnerStatus
SMK system upgrade to v1.0.3.0 โ€” deployed to Deloitte hosted + self-managed instancesEngineeringโœ… Complete
Dashboard/Canvas agent cleanup โ€” auto-created agents now hidden from main list, new "Dashboard Agents" filter tab liveAashmanโœ… Complete
DLP data scrubbing fix โ€” customer PII was being incorrectly scrubbed; resolvedEngineeringโœ… Complete
Feature flag management decoupled โ€” SMK feature flags separated from deployment-specific configurationEngineeringโœ… Complete
Command Center now live โ€” visible in hosted instance and v1.0.3.0 SMKEngineeringโœ… Complete
๐Ÿ“‹ Plans for Next Period Mar 19โ€“Apr 2
PlanOwnerTarget
๐Ÿ”ด Fix Jira Data Center auth (CRITICAL) โ€” resolve basic auth vs API token mismatch for self-hosted Jira DC. Must be ready before RSA.EngineeringASAP / Pre-RSA
Investigate ThreatConnect parameter validation โ€” determine if fix is in main but not in release cut; if so, push SMK v1.0.3.1Bryan / EngineeringThis week
RSA in-person review session โ€” Mo, Bryan/Nick, Kindo team meet Monday afternoon to walk through full update listTony / Mo NezaratiMon Mar 24
Agent long-running reliability (Phase 1) โ€” context compaction, automatic retries, better error messages. Currently 15% through.EngineeringEnd of March
SMK v1.0.3.1 release package โ€” includes dashboard agent cleanup + additional fixes not in v1.0.3.0BrandonPre-RSA
Webhook retry context preservation โ€” ensure workflow restarts retain original webhook trigger context (feedback from Deloitte)EngineeringApr
Streamlined one-click SMK installation โ€” environment validation tooling + simplified deployment processEngineeringIn progress
๐ŸŽฏ Key Schedule Milestones
MilestoneTarget DateStatus
Jira DC + ThreatConnect integration fixes deployed to SMKMar 21 (Fri)๐Ÿ”ด At Risk
RSA Conference โ€” in-person review session with DeloitteMar 24 (Mon PM)โš ๏ธ Scheduled
Agent reliability Phase 1 โ€” first capability dropsEnd of Marchโš ๏ธ 15%
SMK v1.0.3.1 release to DeloittePre-RSAโš ๏ธ In Progress
Program dashboard ready for Deloitte leadershipPre-RSAโš ๏ธ In Progress
Agent reliability Phase 2 โ€” compaction + full retryMid-AprilPlanned
Meta Global Ops โ€” squad allocation & kickoffTBDNot Started
๐Ÿ”บ Active Risks
IDImpactTrendDescriptionMitigation
R1 High ๐Ÿ“ˆ RSA readiness at risk. Jira DC integration broken, needed for demos. Days remaining before RSA. Engineering prioritizing Jira fix above all else. Fallback: demo on hosted instance only.
R2 High โžก๏ธ Missing Exhibits D & E in contract. No formal product spec or roadmap exhibit. Verbal commitments could be argued as enforceable scope. Establish docs.kindo.ai as de facto Exhibit D. Frame requirements sessions around doc baseline.
R3 Med ๐Ÿ“ˆ Agent reliability below Deloitte expectations. Agents quit during long tasks. Timeout Band-Aids applied; root cause fix at 15%. Phase 1 drops end of March. Context compaction + retries + better error reporting.
R4 Med โžก๏ธ Release cut lag. Fixes merged to main may not be in SMK release. ThreatConnect fix potentially in this gap. v1.0.3.1 release being prepared. Need clearer release-to-SMK pipeline.
R5 Med โžก๏ธ Meta Global Ops fully unresourced. 10 backlog items, 4 high-priority, zero squad allocated. Defer until post-RSA. Allocate squad in next Program Planning cycle.
๐Ÿšจ Key Issues
IDDescriptionStatusOwnerDue Date
I1 Jira Data Center auth broken โ€” basic auth flow incorrectly requests API token. Deloitte unable to access self-hosted Jira DC at all. "Extremely critical" per Deloitte. OPEN Engineering ASAP (Pre-RSA)
I2 ThreatConnect MCP tool call failures โ€” validation errors on parameters. 6+ retries before a successful call. MCP descriptions may be unclear. Possible fix in main not in SMK release. INVESTIGATING Bryan This week
I3 Okta integration bug (ENG-8639) โ€” partial/no data, "Client association GWT kit is invalid" error. Blocks Okta write tools (ENG-8795). OPEN Unassigned TBD
I4 ServiceNow OAuth2 (ENG-8794) โ€” OAuth2 connection fails while REST API works. OPEN Unassigned TBD
I5 SMK v1.0.3.1 not yet released โ€” dashboard agent cleanup and potentially ThreatConnect fix not in customers' instances. IN PROGRESS Brandon Pre-RSA
๐Ÿ“ Key Decisions
IDDecisionDecision MakerDate
D1Jira DC fix is #1 priority above all other work โ€” must be ready for RSADeloitte (Mo/Matthew)Mar 19
D2RSA in-person review scheduled Monday afternoon โ€” full update walkthrough with Mo, Bryan/NickTony / MoMar 19
D3ThreatConnect โ€” Bryan to follow up via email with PR analysis (is fix in release or not?)Bryan VannMar 19
D4Webhook retry must preserve original trigger context (Deloitte feedback โ†’ accepted as enhancement)Tony / BryanMar 19
D5Agent reliability Phase 1 target: end of March; iterative drops after thatEngineeringMar 19
๐Ÿ“ž Most Recent Call: Deloitte Cyber Weekly โ€” Mar 19, 2026
Kindo Attendees
Charlie Hulcher, Aashman, Tony Wong, Bryan Vann, Mo Nezarati, Joana Dias
Deloitte Attendees
Matthew
๐Ÿ”ด CRITICAL: Jira Data Center integration completely broken โ€” auth flow requests API token when using basic auth for self-hosted Jira DC. Credentials confirmed working. Deloitte: "Extremely critical โ€” number one priority. Needed for RSA." Screenshot captured.
โš ๏ธ DEGRADED: ThreatConnect MCP tool calls failing โ€” 6+ validation error retries before a successful call. May be fixed in main but not in current SMK release. Bryan to follow up via email with PR analysis.
๐Ÿ“… RSA MEETING PLANNED: Monday afternoon at RSA โ€” Mo arrives SF ~10AM from Toronto, available after ~12PM. Bryan + Nick to join. Full update walkthrough in person.
โœ… DELIVERED: SMK v1.0.3.0 upgrade, Command Center live, dashboard agent cleanup (Mar 16), DLP scrubbing fix, feature flag decoupling. Some items need v1.0.3.1 for SMK instances.
๐Ÿ’ก FEEDBACK CAPTURED: Workflow restart doesn't preserve webhook trigger context โ€” accepted as enhancement. Per-step retry (not just full restart) requested for hard failures.
๐Ÿ”„ Changes Since 2026-03-17 4 new issues
IssueTitleTypeSource
ENG-8792API action step: Dynamic input mode fails to resolve variables from prior workflow steps๐Ÿ”ด BugMar 17 Cyber Weekly
ENG-8793Workflow list: Add ability to filter workflows by creator๐ŸŸก FeatureMar 17 Cyber Weekly
ENG-8794ServiceNow integration: OAuth2 connection fails while REST API works๐Ÿ”ด BugMar 17 Cyber Weekly
ENG-8795Expand Okta integration with write/create action tools๐Ÿ”ด FeatureMar 17 Cyber Weekly
๐Ÿงญ Strategic Discussion Guide โ€” Key Decisions for Stakeholders
1. Canvas: Tactical Fixes vs. Strategic Rebuild Decision Required
Canvas is the #1 request category from Deloitte and is blocking SOC production deployment. Current JSON-based architecture has a hard ceiling. Three investment paths to evaluate:
Path A: Tactical Fixes
URL params, navigation, filters. Unblocks SOC short-term. Doesn't solve escalation cycle.
Path B: Kindo API
Expose API for Deloitte to build custom UIs. Relatively easy. Shifts UI burden to customer.
Path C: Generative UI
v0/Lovable-style system. ~90 days R&D. Solves the problem permanently. Quarter-sized investment.
2. Agent Reliability: Timeline & Expectations Alignment Needed
Deloitte expects agents that run for hours reliably. Currently at 15% progress โ€” first drops end of March, full reliability mid-April+. Need to align on: what "reliable" means for each team, acceptable failure modes, and interim workarounds. Deloitte feedback on retry behavior and webhook context preservation already captured.
3. RSA Readiness: Jira DC is a Blocker Urgent
Jira Data Center integration is completely broken and is Deloitte's #1 critical issue โ€” needed for RSA demos. Monday afternoon in-person session planned (Mo + Bryan/Nick + Kindo team). ThreatConnect also degraded. SMK v1.0.3.1 release needed before RSA.
4. Integration Priority Ranking Input Requested
5 integration streams competing for engineering bandwidth: Jira DC (broken), ThreatConnect (degraded), ServiceNow + SAP (not started), SailPoint & Okta (bugs). Deloitte wants to discuss prioritization at RSA. Stakeholder input needed to sequence these.
5. Meta Global Ops: Resource Allocation Not Started
10-issue automated QA testing platform for Meta via Deloitte โ€” entirely unresourced. 4 high-priority items including RACI plan. Needs squad allocation and Deloitte kickoff before any work begins. Decision: priority vs. existing workstreams?
๐Ÿ“ž Previous Call Context (2026-03-18)
  • โ–ธ Discussion focused on internal Deloitte infra friction โ€” K8s environment differences not fully understood internally
  • โ–ธ NGINX ingress deprecation referenced by Deloitte, but Kindo ships AWS ALB (not the same thing, per Marcos)
  • โ–ธ Amazon Bedrock model catalog โ€” some models require preliminary customer steps to enable access

Workstreams

๐Ÿ›ก๏ธ Cyber / Adelina Squad
workstream:cyber-adelina
๐ŸŸข Most Active
33% complete14 of 43
29
Open
14
Done
27
Cancelled
Squad: CharlieAashmanMadisonDoinkBrandon
๐Ÿ” IAM / Johnson & Johnson
workstream:iam-jnj
๐ŸŸก Mostly Complete
91% complete21 of 23
2
Open
21
Done
12
Cancelled
Squad: YashAashmanSeanCharlie
๐Ÿ”‘ IAM POC (SailPoint / Entra)
workstream:iam-poc
๐ŸŸก Mostly Complete
90% complete9 of 10
1
Open
9
Done
1
Cancelled
Squad: AashmanSeanDevon
๐Ÿข ERP Security (SAP)
workstream:erp-security
โœ… Complete
100% complete7 of 7
0
Open
7
Done
2
Cancelled
Squad: SeanHannahAmanda
๐ŸŒ NetOps (Cisco)
workstream:netops
โœ… Complete
100% complete3 of 3
0
Open
3
Done
3
Cancelled
Squad: Charlie
๐ŸŒ Meta Global Ops
workstream:meta-global-ops
๐Ÿ”ต Pre-Work
0% complete0 of 10
10
Backlog
0
Done
0
Cancelled
Squad: Unassigned

Strategic Project View

Projects group related work across workstreams. This view helps stakeholders understand scope, strategic impact, and cross-cutting dependencies โ€” not just individual tickets.

Active Projects
9
+ 2 completed
Large Scope
2
Canvas + Meta QA
Medium Scope
3
Reliability ยท Extensions ยท Multi-Agent
Small / Focused
4
SMK ยท API ยท GitOps ยท Auth
๐Ÿ–ผ๏ธ
Canvas Production Readiness
6 active ยท 1 done
LARGE SCOPE In Progress
Strategic Context: Transform Canvas from an internal tool into a production-grade end-user interface for Deloitte. Canvas is the primary surface Deloitte's teams interact with daily โ€” and it's currently blocking production deployment for the SOC.
๐Ÿ—ฃ๏ธ Customer Voice โ€” What Deloitte Is Asking For
1. Show Kindo agent data in Canvas โ€” Matthew wants Canvas to display data about what agents are running, their status, and project-related information. Essentially showing Kindo agent data as tool data in dashboards.
2. Navigation between Canvas dashboards โ€” Matthew wants linking between different dashboards, menus, navigation โ€” an interconnected experience, not isolated views.
3. URL parameters for drill-down โ€” "Right now, if I wanted to push this to production for our SOC, I can't do that unless I have those URL parameters." Click one dashboard โ†’ opens another with filter context. This is the #1 production blocker.
4. More interactive web app capability โ€” Deloitte leadership "don't love the current UI experience." If Canvas can't deliver sufficient interactivity, they will build their own UI. The IAM team is already considering this. This affects every workstream at Deloitte, not just Cyber.
โš ๏ธ Pattern Problem & Architectural Limit
Escalation cycle: Every time a Canvas request is fulfilled, the next one comes immediately. Endless escalation on a limited architecture.
Architecture ceiling: Current Canvas is JSON dashboards โ€” not infinitely scalable. Stacking features on this architecture has a hard ceiling.
๐Ÿ”ฎ Strategic Path Forward
Real solution: Build a v0/Lovable/Replit-style generative UI system โ€” estimated as a quarter-sized initiative (~90 days R&D) to reach operational confidence.
Agreed tactical approach: Ship immediate Canvas fixes now (URL params, navigation) + offer a Kindo API (relatively easy). Position generative UI as a 2026 roadmap item without committing to a specific timeline.
Impacts: All Deloitte teams (cross-workstream)
Dependencies: Chat Actions Public API (for Kindo API path)
Stakeholder Input Needed: Priority ranking of tactical fixes, acceptance of generative UI timeline, whether to invest in Kindo API as interim
โ–ถ Show issues
IssueTitlePriorityState
ENG-8509Interactive web page UI functionality for canvases๐Ÿ”ด HighBacklog
ENG-8860URL parameters for drill-down navigationโ€”Triage
ENG-8598Canvas editor: filters + multi-page navigation without JSON editing๐ŸŸก MedBacklog
ENG-8057Implement observability for canvas๐ŸŸก MedBacklog
ENG-8563Dashboard sharing for authorized recipientsโ€”Backlog
ENG-8514Mermaid graph/diagram support in canvas markdownโ€”Backlog
ENG-7580Audit log everything in dashboardsโ€”Backlog
๐Ÿ”„
Chat / Agent Long-Running Reliability
3 active
MEDIUM SCOPE Critical Path
Strategic Context: Deloitte's core use case requires agents that run reliably for hours. Today, agents quit due to context overflow, timeouts, and unrecoverable failures. Currently 15% through โ€” first drops expected end of March.
๐Ÿ—ฃ๏ธ Customer Voice โ€” What Deloitte Is Experiencing
Agents quit mid-task โ€” agents stop after hitting timeouts or unspecified failures. Initial timeout increases were a "Band-Aid." Deloitte needs agents that work for hours on complex tasks.
Uninformative error states โ€” "Red boxes that don't give any real information about what's happening." When agents fail, users have no way to understand why or what to do next.
No per-step retry โ€” if an agent hard-fails mid-run, the only option is restarting the entire workflow. Deloitte requested a "retry this step" button for unrecoverable automatic failures.
Webhook restart loses context โ€” "The retry does not work if it's a web trigger. It won't pull in the same context from the webhook." Restarts lose the original triggering data.
No visibility into intermediate steps โ€” "We don't know the results of step 2 or step 3 of a 5-step agent." Need to see/analyze results from each individual step.
Impacts: Cyber/Adelina (primary), all workflow users
Timeline: Phase 1 end of March, iterative drops after
Stakeholder Input Needed: Acceptable failure modes, retry vs. restart preferences, minimum session duration requirements
โ–ถ Show issues
IssueTitlePriorityState
ENG-8859Workflow restart doesn't preserve webhook trigger contextโ€”Triage
ENG-8511Selective data flow between model context windows ("Plan Mode")โ€”Todo
ENG-8502Conversation compaction (continuous conversation)โ€”Todo
๐Ÿ”Œ
Deloitte Platform Extensions
5 active
MEDIUM SCOPE In Progress
Strategic Context: New integrations and platform capabilities requested specifically by Deloitte. Each extension expands what Deloitte teams can automate in their security and identity workflows.
๐Ÿ—ฃ๏ธ Customer Voice โ€” Integration Needs
๐Ÿ”ด Jira Data Center (CRITICAL) โ€” completely broken after recent deployment. Auth flow requests API token when using basic auth for self-hosted Jira DC. "Number one critical โ€” we definitely need to get fixed ASAP. Needed for RSA."
โš ๏ธ ThreatConnect (degraded) โ€” connects but 6+ validation error retries per successful call. MCP parameter descriptions may be unclear to the agent. "I'm limping along with it." Possible fix in main but not in SMK release cut.
ServiceNow + SAP โ€” connectivity needed for test systems. ServiceNow OAuth2 fails while REST works. SAP needs JCo/RFC connectivity.
SailPoint & Okta โ€” Okta shows partial/no data with "GWT kit invalid" error. Deloitte sending full list of SailPoint write ops they need.
Version confusion โ€” "Is there a way to see what version of the integration we have?" Deloitte doesn't know whether fixes in main are in their instance.
Impacts: Cyber (Jira, ThreatConnect), IAM (ServiceNow, SailPoint, Okta), all teams (JSON output)
Dependencies: SMK release pipeline (fixes in main vs. deployed)
Stakeholder Input Needed: Integration priority ranking, test system access for ServiceNow/SAP, Okta write ops scope
โ–ถ Show issues
IssueTitlePriorityState
ENG-8794ServiceNow OAuth2 connection fails๐Ÿ”ด HighBacklog
ENG-8863ThreatConnect MCP parameter validation errorsโ€”Triage
ENG-8463BYO Embeddings (Pinecone)โ€”Backlog
ENG-8233Delete deprecated CrowdStrike standalone MCP๐ŸŸข LowBacklog
ENG-7911Structured JSON Output (JSON Schema Enforcement)โ€”Backlog
๐Ÿ“ฆ
Efficient SMK Install
2 active ยท both ๐Ÿ”ด High
SMALL SCOPE HIGH URGENCY
Strategic Context: Streamlining the self-managed Kindo (SMK) deployment experience. Critical for scaling to 7 planned SMK deployments across Deloitte teams.
๐Ÿ—ฃ๏ธ Customer Voice
Installation friction โ€” initial deployments had many slowdowns: environments not set up, prerequisites not tested, multiple manual steps. "It always looks good when we come in, push a button, and it works."
Privacy / AI policy compliance โ€” Adelina's team requires users to sign on and acknowledge Deloitte's AI use policy before accessing the system. Must be configurable per deployment.
Agent portability โ€” need to import agents between Kindo installations so configurations don't have to be recreated manually for each SMK instance.
Impacts: All SMK deployments (7 planned)
Stakeholder Input Needed: Privacy notice requirements per deployment, agent export/import scope, environment pre-validation checklist
โ–ถ Show issues
IssueTitlePriorityState
ENG-8596Configurable privacy notice flow for whitelabelled deployments๐Ÿ”ด HighTodo
ENG-7913Import Agents between Kindo installations๐Ÿ”ด HighBacklog
๐Ÿค–
Multi-Agent Orchestration
2 active
MEDIUM SCOPE Future / Strategic
Strategic Context: Enable agents to trigger and coordinate other agents โ€” a prerequisite for complex multi-step workflows. This is a platform capability that will unlock new use cases across all Deloitte workstreams. Currently in research/backlog phase.
Impacts: All workstreams (platform capability)
Dependencies: Chat/Agent Reliability must stabilize first
Stakeholder Input Needed: Priority use cases for multi-agent workflows, acceptable latency
โ–ถ Show issues
IssueTitlePriorityState
ENG-7910"Agent Trigger" Type & Inter-Agent Orchestration Lifecycleโ€”Backlog
ENG-6801Hatchet flow control & multi-agent tool researchโ€”Backlog
๐Ÿ”—
Chat Actions Public API
1 active
SMALL SCOPE New
Strategic Context: Public API with streaming support for custom UI integrations. Enables Deloitte to build bespoke interfaces on top of Kindo's agent infrastructure.
๐Ÿ—ฃ๏ธ Customer Voice
Streaming API โ€” currently must poll run IDs repeatedly with no idea how long to wait. Need real-time streaming to see results step-by-step as agents work.
Ephemeral tool calls โ€” today, to do any dynamic tool calling, they must create a full agent. Need the ability to trigger tool calls without agent creation โ€” from Canvas or scripts.
Kindo API as Canvas interim โ€” agreed as a tactical path: offer a Kindo API (relatively easy to build) so Deloitte can build custom UIs while generative UI is on the roadmap.
Impacts: All teams โ€” enables custom UI path, unblocks Canvas limitations
Stakeholder Input Needed: API scope requirements, streaming vs. polling preference, authentication model
โ–ถ Show issues
IssueTitlePriorityState
ENG-8861Agents API: streaming support for real-time resultsโ€”Triage
๐Ÿ“
Agent Version Control
1 active
SMALL SCOPE Future
Strategic Context: GitOps workflow for agents and canvases โ€” version control, collaboration, and rollback. Critical for enterprise governance as Deloitte teams scale agent usage across multiple teams and deployments.
โ–ถ Show issues
IssueTitlePriorityState
ENG-8512GitOps for agents and canvases โ€” version control & collaborationโ€”Backlog
๐Ÿ”’
Auth & Session Hardening
1 active
SMALL SCOPE Backlog
Strategic Context: Session timeout and authentication hardening. Enterprise requirement for security compliance in Deloitte's environment.
โ–ถ Show issues
IssueTitlePriorityState
ENG-644048-hour session timeoutโ€”Backlog
๐ŸŒ
Meta Global Ops โ€” Automated QA Testing Platform
10 active ยท 0 assigned ยท all backlog
LARGE SCOPE Not Started
Strategic Context: Build an automated QA testing platform for Meta via Deloitte. New engagement with significant scope โ€” browser automation, mobile testing, visual comparison, ticketing integrations. Entirely unresourced. Requires RACI definition and phased engagement plan before work can begin.
Impacts: New revenue stream via Deloitte
Prerequisites: RACI plan, squad allocation, Deloitte kickoff
Stakeholder Input Needed: Priority vs. other workstreams, resource allocation, timeline expectations
โ–ถ Show issues
IssueTitlePriorityState
ENG-8472RACI & Phased Engagement Plan with Deloitte๐Ÿ”ด HighBacklog
ENG-84692FA & Identity Flow Workarounds๐Ÿ”ด HighBacklog
ENG-8466Screenshot / Visual Comparison Engine๐Ÿ”ด HighBacklog
ENG-8465Web Flow Hardening & Demo Polish๐Ÿ”ด HighBacklog
ENG-8471Performance, Scale, and Reliability at Meta Scale๐ŸŸก MedBacklog
ENG-8467Mobile Browser Emulation๐ŸŸก MedBacklog
ENG-8470Messaging & Ticketing Integrations (Google Chat, Salesforce)๐ŸŸก MedBacklog
ENG-8468Full Mobile App Testing via Device Farm Partner๐ŸŸข LowBacklog
ENG-8317Browser output visibility in product โ€” live sidebar viewportโ€”Backlog
ENG-8056Implement Chromium for Browser Use in Sandbox Podโ€”Backlog
โœ…
Release 2026.03.0
SMK integration validation, PII cleanup, SMK Installer โ€” all shipped.
โœ…
Scalable Integrations
Microsoft Defender MCP + Microsoft Graph Alerts โ€” both delivered.

All Open Issues

๐Ÿ›ก๏ธ Cyber / Adelina โ€” Open Issues 29
IssueTitleStatePriorityAssignee
ENG-8597Command Center: collaborative alert triage workflowTriage๐Ÿ”ด Highโ€”
ENG-8795Expand Okta integration with write/create action toolsTriage๐Ÿ”ด Highโ€”
ENG-8792API action step: Dynamic input fails to resolve variablesTriage๐Ÿ”ด Highโ€”
ENG-8640Expand SailPoint ISC tool coverageTriage๐Ÿ”ด Highโ€”
ENG-8639Okta integration bug: partial/no data, disconnected stateTriage๐Ÿ”ด Highโ€”
ENG-8596Add configurable privacy notice flow for whitelabelled deploymentsTodo๐Ÿ”ด Highโ€”
ENG-8721ThreatConnect IntegrationTodo๐Ÿ”ด HighAashman
ENG-8425Get ServiceNow and SAP connectivity working with test systemsTodo๐Ÿ”ด Highโ€”
ENG-8744Docs site gaps: workflow tutorial, cyber walkthroughs, memory patternsConfirming๐Ÿ”ด HighDoink
ENG-8509Interactive web page UI functionality for canvasesBacklog๐Ÿ”ด Highโ€”
ENG-7913Import Agents between Kindo installationsBacklog๐Ÿ”ด Highโ€”
ENG-8732Release package 2026.03.1 (Opus 4.6 + GPT OSS 120)Backlog๐Ÿ”ด HighBrandon
ENG-8730Model management: delete/modify models without direct DB accessBacklog๐Ÿ”ด Highโ€”
ENG-8729SMK system status verification endpointBacklog๐Ÿ”ด Highโ€”
ENG-8793Workflow list: Add ability to filter workflows by creatorTriage๐ŸŸก Medโ€”
ENG-8598Canvas editor: filters and multi-page navigation without JSON editingBacklog๐ŸŸก Medโ€”
ENG-8423Canvas: Production-ready primary end-user UI mode with hierarchical navBacklog๐ŸŸก Medโ€”
ENG-8057Implement observability for canvasBacklog๐ŸŸก Medโ€”
ENG-8563Add dashboard sharing for authorized recipientsBacklog๐ŸŸก Medโ€”
ENG-8424Native prompt saving and managementBacklog๐ŸŸข Lowโ€”
ENG-8233Delete deprecated standalone CrowdStrike Falcon MCP serverBacklog๐ŸŸข Lowโ€”
ENG-8463BYO Embeddings: Allow custom OpenAI-compatible embeddings endpointBacklog๐ŸŸข Lowโ€”
ENG-8511Selective data flow control between model context windowsTodoโ€”โ€”
ENG-8514Mermaid graph/diagram support in canvas markdownBacklogโ€”โ€”
ENG-8513MITRE ATT&CK tool integrationBacklogโ€”โ€”
ENG-8512GitOps approach for agents & canvases โ€” version control & collabBacklogโ€”โ€”
ENG-8319Sub-agent execution support โ€” first-class agent-triggers-agentBacklogโ€”โ€”
ENG-7911Structured JSON Output (JSON Schema Enforcement)Backlogโ€”โ€”
ENG-7910"Agent Trigger" Type & Inter-Agent Orchestration LifecycleBacklogโ€”โ€”
๐Ÿ” IAM / J&J โ€” Open Issues 2
IssueTitleStatePriorityAssignee
ENG-7580Audit Log Everything in DashboardsBacklogโ€”โ€”
ENG-6801Hatchet flow control & multi-agent tool researchBacklogโ€”โ€”
๐Ÿ”‘ IAM POC โ€” Open Issues 1
IssueTitleStatePriorityAssignee
ENG-8794ServiceNow integration: OAuth2 connection fails while REST API worksTriage๐Ÿ”ด Highโ€”
๐ŸŒ Meta Global Ops โ€” All Issues (Backlog) 10
IssueTitleStatePriorityAssignee
ENG-8472RACI & Phased Engagement Plan with DeloitteBacklog๐Ÿ”ด Highโ€”
ENG-84692FA & Identity Flow WorkaroundsBacklog๐Ÿ”ด Highโ€”
ENG-8466Screenshot / Visual Comparison EngineBacklog๐Ÿ”ด Highโ€”
ENG-8465Web Flow Hardening & Demo PolishBacklog๐Ÿ”ด Highโ€”
ENG-8471Performance, Scale, and Reliability at Meta ScaleBacklog๐ŸŸก Medโ€”
ENG-8467Mobile Browser EmulationBacklog๐ŸŸก Medโ€”
ENG-8470Messaging & Ticketing Integrations (Google Chat, Salesforce)Backlog๐ŸŸก Medโ€”
ENG-8468Full Mobile App Testing via Device Farm PartnerBacklog๐ŸŸข Lowโ€”
ENG-8317Browser output visibility in product โ€” live sidebar viewportBacklogโ€”โ€”
ENG-8056Implement Chromium for Browser Use in Sandbox PodBacklogโ€”โ€”

Delivery Cadence โ€” Two-Week Team Cycle

๐Ÿ“ฆ Week 1 โ€” BUILD
TUESDAY
Requirements Day (Human Touchpoint)
8:00 AM โ€” Adelina (90 min)
9:45 AM โ€” Cyber (90 min)
11:30 AM โ€” J&J (90 min)
1:30 PM โ€” Meta (90 min)

Each: Deliver โ†’ Gather โ†’ Deep Dive โ†’ Scope Triage โ†’ Commit
TUE PM โ€“ WED
๐Ÿค– Agentic Sprint Execution
Requirements โ†’ Akira pipeline โ†’ 3 parallel squads
12 sprints per release in ~6.5 hours
60-min sprint cycles: Req โ†’ Arch โ†’ Build โ†’ Test โ†’ Ship
THU โ€“ FRI
๐Ÿง‘ Human Review Gates
Quality review ยท Edge cases ยท Staging verification ยท Evidence packages
FRIDAY
๐Ÿ“Š Status Report #1 โ†’ Each Team
Staging links ยท Demo recordings ยท Visual progress ยท Blockers w/ mitigation
โœจ Week 2 โ€” HOLD & POLISH
MON โ€“ THU
Release Complete
Polish ยท Document ยท Prep demos ยท Address review findings ยท Prep delivery presentation for Tuesday
FRIDAY
๐Ÿ“Š Status Report #2 โ†’ Each Team
Release-ready summary with staging links ยท Preview of Tuesday delivery
NEXT TUE
๐Ÿ” Deliver + New Intake (Cycle Repeats)
Full release cycle = equivalent of 4-5 traditional sprints, delivered every 2 weeks
Intake
Day 1
Tuesday
Agentic Build
~6.5h
12 sprints
Human Review
+2 days
Thu โ€“ Fri
Release Ready
Day 5
Friday
Delivery
Day 15
Next Tuesday

Monthly Program Management Overlay

๐Ÿ—“๏ธ Week 1 โ€” Cycle A Build
MONDAY
Program Planning (Internal)
Unified backlog review ยท Cross-team prioritization ยท Contract scope governance ยท Capacity allocation
TUESDAY
Requirements Intake (Cycle A)
All 4 teams back-to-back + Deliver Cycle B results
FRIDAY
Status Reports + Program Check-in
Story prioritization ยท Issue/blocker list ยท Scope triage results
๐Ÿ—“๏ธ Week 3 โ€” Cycle B Build
TUESDAY
Requirements Intake (Cycle B)
All 4 teams + Deliver Cycle A results
WEDNESDAY
Reality Check (Internal)
Staging review ยท Progress to monthly goals ยท Time/cost/scope assessment ยท Cross-team adjustments
FRIDAY
Status Reports + Program Check-in
๐Ÿ—“๏ธ Week 4 โ€” Monthly Review
THURSDAY
Monthly Program Review & Re-Assessment
Cycle results across all 4 teams ยท Unified backlog re-prioritization ยท Contract scope audit ยท Dependencies reassessed ยท Velocity trends ยท Pod 2 sync
FRIDAY
Portfolio Summary โ†’ Deloitte Leadership
Roll-up to Vikram, Kush, Arun

Scope Governance

๐Ÿ›

Bug / Defect

Software doesn't function per docs.kindo.ai

โ†’ Support ticket โ†’ SLA response
Sev1: 4hr ยท Sev2: 1 business day
Covered by $500K/yr support fee
โœ…

In-Scope Feature

Functionality documented or implied by docs.kindo.ai

โ†’ Build in current cycle
โ†’ Deliver next Tuesday
Covered by $5M/yr license
๐Ÿšซ

Out-of-Scope / Bespoke

Functionality NOT in docs.kindo.ai or product roadmap

โ†’ Flag for SOW negotiation
โ†’ Additional Services amendment
Separate SOW / rate card
๐Ÿ“œ Scope Authority: docs.kindo.ai

The reference contract defines the product by its Documentation. For the Deloitte engagement, docs.kindo.ai serves as the canonical baseline.

Every requirement is triaged against this baseline:

Deloitte Request โ†’ Diff vs docs.kindo.ai โ†’ Bug In-Scope Out-of-Scope
โš ๏ธ Risk: Missing Exhibits D & E
Without Exhibit D (product spec) and Exhibit E (roadmap), verbal commitments from demos/sales could be argued as enforceable scope. Mitigation: Establish docs.kindo.ai as the de facto Exhibit D.
๐Ÿง‘ Human Decision Gates
GateWho DecidesWhenScope
๐Ÿง‘ Scope CommitmentDeloitte teamTuesday requirements sessionApproves what they want built
๐Ÿง‘ Sprint ApprovalKindo (Tony/Charlie)Tuesday PM (internal)Reviews sprint plan before agents execute
๐Ÿง‘ Evidence ReviewKindo (Tony/Charlie)Thursdayโ€“FridayVerifies delivered work before staging
๐Ÿง‘ Scope TriageTonyGray zone requestsBuild vs. flag for SOW
๐Ÿง‘ Monthly Re-prioritizationKindo leadershipWeek 4 ThursdayUnified backlog adjustment

Team & Stakeholders

๐Ÿข Deloitte
VikramSenior Leadership
KushSenior Leadership
ArunProgram Leadership
MatthewCyber / Adelina Squad
Adelina SquadTeam Leads TBD
J&J SquadTeam Leads TBD
Meta SquadTeam Leads TBD
โšก Kindo
Tony WongChief Delivery Officer
Mo NezaratiEngagement Lead
Charlie HulcherEngineering
Joana DiasProgram Support
Mathew VargheseCRO
AkiraAI Program Manager
BurkeAI Engineering
๐Ÿ”ง Engineering Squad
AashmanPrimary IC โ€” dashboards, canvas, MCP, integrations
MadisonCrowdStrike, ThreatConnect
Yash KothariIAM J&J dashboards
Sean WalkerSAP, SailPoint, IAM
Devon PeroutkyIAM POC, Entra AD
HannahSAP ODATA
AmandaSAP user validation
Brandon CSMK validation, release packages
Doink (kinDOS)Docs site, call transcript processing
MarcosInfrastructure (ALB, K8s)

โฑ๏ธ Time Commitments

Deloitte Teams (per team)

Requirements Intake + Delivery Review90 min ร— 2/mo
Friday Status Report (read + click)~10 min ร— 4/mo
Total per team~3.5 hrs/month

Deloitte Leadership

Monthly Portfolio Summary (async read)~20 min
Monthly Review Discussion (optional)30โ€“60 min
Total~1 hr/month

Tony's Time

Program Planning2 hrs
Requirements Intake (4 teams ร— 90 min ร— 2)12 hrs
Friday Program Check-ins2 hrs
Reality Check1.5 hrs
Monthly Program Review2 hrs
Total~19.5 hrs/month

Risks & Blockers

๐Ÿ”ด

Missing Exhibits D & E in Contract

Without product specification (D) and roadmap (E), verbal commitments from demos/sales calls could be argued as enforceable scope. Biggest scope governance risk.

Critical Risk
๐Ÿ”ด

Okta Integration Bug (ENG-8639)

Partial/no data, disconnected state โ€” "Client association GWT kit is invalid" error. Blocks ENG-8795 (Okta write tools, explicit Deloitte request).

Blocker
๐Ÿ”ด

ServiceNow OAuth2 Bug (ENG-8794)

OAuth2 connection fails while REST API works. Related to broader ServiceNow/SAP connectivity (ENG-8425, ENG-8304).

Blocker
๐ŸŸก

Meta Global Ops โ€” Fully Unresourced

10 issues, all in backlog, zero assigned. 4 high-priority items (RACI plan, 2FA workarounds, screenshot engine, web flow hardening). No squad allocated.

Capacity Risk
๐ŸŸก

Deloitte K8s Environment Confusion

From today's call: Deloitte doesn't fully understand differences in their own K8s environments. NGINX ingress vs AWS ALB confusion. May cause deployment friction.

Infra Risk
๐ŸŸก

Amazon Bedrock Access Prerequisites

Some Bedrock models require preliminary customer steps to enable access. Deloitte may not have completed these.

Dependency
๐ŸŸก

~25 Unassigned Open Issues

Significant portion of open portfolio has no squad allocation. Particularly acute for Cyber (12 open, many unassigned) and all cross-workstream items.

Capacity Risk
๐Ÿ”— Key Dependencies
DependencyBlocksStatus
Okta connection bug fix (ENG-8639)ENG-8795 (Okta write tools)In Triage
SMK release package (ENG-8732)7 SMK deploymentsIn Progress
SailPoint write ops (email from Deloitte)ENG-8640 (SailPoint expansion)Waiting
Deloitte Bedrock access setupModel catalog availabilityTBD
Docs site gaps (ENG-8744)Scope baseline (docs.kindo.ai as Exhibit D)Confirming
๐Ÿ“ก Integration Signals (Reconfirmed)
IntegrationIssueStatusNotes
WorkdayAGE-149RequestedReconfirmed as requested capability
OracleENG-6612RequestedReconfirmed โ€” on-prem + cloud support required

Program Structure โ€” The Two-Pod Engine

AKIRA โ€” AI PROGRAM MANAGER
Decomposes requirements into executable sprint campaigns ยท Human oversight at every gate

Pod 1: Kingdom Portfolio & Program Management

Fulfills the Deloitte contract

  • 4 Deloitte teams (Adelina, Cyber, J&J, Meta)
  • 7 SMK deployments
  • Requirement triage & client delivery
  • Scope governance against docs.kindo.ai
  • 3 parallel squads, 60-min sprint cycles
  • 12 sprints/release in ~6.5 hours

Pod 2: Akira Autonomous Product Development

Builds Akira into the Kindo product

  • Build Akira into Kindo platform
  • New product surfaces
  • Platform capabilities
  • The engine IS the product
  • Continuous delivery
  • Contract learnings feed into product
๐Ÿ’ก Key Insight
Pod 1 delivers the Kingdom contract. Pod 2 builds Akira into the Kindo product. They share the same agentic architecture, sprint mechanics, and oversight model. What we build for Deloitte proves what we sell to the next 100 customers.
Operational Burn Reduction
70-80%
Lower vs. traditional delivery
Sprint Velocity
12
Sprints per release in ~6.5 hrs
Equivalent Traditional Pace
4-5ร—
Sprint scope compressed to 2 weeks

๐Ÿš€ Implementation Phases

โ˜‘๏ธ

Phase 0: Pre-RSA (Now โ†’ RSA)

โ˜‘ Matthew warm-intro email ยท โ˜ Prepare program dashboard ยท โ˜ Lock docs.kindo.ai as scope baseline ยท โ˜ Prepare RSA walkthrough materials

๐Ÿ“‹

Phase 1: First Cycle (Post-RSA, ~1 week after)

First Tuesday requirements intake with all 4 teams ยท Run delivery manually โ€” Burke builds, Tony reviews ยท Generate first Friday status reports ยท Validate cadence with real requirements

โšก

Phase 2: Cadence Established (Cycles 2-3)

Semi-automated Reality Check and status reports ยท Scope triage process validated ยท Monthly Program Review produces first Cycle Results ยท Pod 2 feeds contract learnings into product

๐Ÿš€

Phase 3: Full Engine (Cycle 4+)

Fully automated status, tracking, sprint execution ยท Humans attend only decision gates ยท Portfolio governance on live data ยท The engine that delivers Deloitte becomes the product demo for 100 more

๐ŸŽญ What Deloitte Sees vs. What Actually Happens

What Deloitte SeesWhat Actually Happens
"We have a structured delivery team"2 Mini-CEO Pods, 3 parallel squads, AI program management
"Requirements captured Tuesday, delivered next Tuesday"12 agentic sprints in 6.5 hours, held for human review
"Weekly status with staging links"Auto-generated from pipeline state, not manually compiled
"Monthly portfolio view across all teams"Akira synthesizes cross-team status in real-time
"Requests triaged against documented capabilities"Automated diff against docs.kindo.ai, contract-aware scope governance
"Startup speed with enterprise rigor"70-80% lower operational burn, dual-pod engine