The governed core is available in controlled pilot. Workspace-specific providers and publishing destinations require current certification evidence before production use.
Each item below is disclosed from the dated product evidence manifest and
currently rests on local candidate evidence, not production
certification. Staged work is listed separately in the manifest rather
than implied here.
-
Multi-engine answer evidence
Bounded answer, citation, competitor, and uncertainty evidence across six supported targets; live availability remains workspace-specific.
-
First-party search demand
Google Search Console evidence preserves query, page, date, country, and device through replay-safe page checkpoints, atomic snapshot promotion, and explicit 50,000-row, provider-call, duration, and connection limits; Google's top-rows limitation remains disclosed.
-
Reviewable SEO decision graph
A bounded query-page/site/partial-entity graph surfaces cannibalization, decay, unmatched demand, merge/redirect, and internal-link decisions for human review.
-
Grounded drafting
Draft claims remain bound to approved Truth Graph sources and validation evidence instead of unsupported model prose.
-
Independent publish approval
Publishing remains a separately authorized, current-state-revalidated decision; automation cannot silently remove the approval gate.
-
Destination-bound CMS workflow
Rehearsal, publish, archive, and reconciliation bind the exact validated destination and use durable receipts.
-
Scheduled governed checks
Durable background functions can sense, plan, generate, verify, and recover within enabled workspace flags and budgets.
-
Native, Copilot, and MCP control
Declared mutation and read capabilities map into the native, Copilot, and MCP capability plane with canonical permissions, feature flags, authoritative plans, bounded reads, and six-field effect disclosures; credential entry remains deliberately human-only.
-
Confirmed domain activation
A bounded public-homepage inspection proposes evidence-linked setup facts behind one explicit owner/admin confirmation and performs no paid check or publish.
-
Receipt-verified experiments
New experiments freeze prompt-cluster exposure, isolate arm budgets, and require immutable unit outcomes before adaptive eligibility; legacy correlated evidence stays ineligible.
-
Honest observation modes
Sample evidence distinguishes provider answer APIs, SERP APIs, consumer UI observations, test fixtures, and unknown legacy rows without exposing raw provider metadata.
-
Evidence-driven content routing
Generation chooses one of seven typed strategies before provider work, then requires deterministic strategy binding, evidence, structure, schema, capability, and approval checks. Tool and localization outputs remain implementation or language-review briefs, never publish-ready claims.
-
Goal-level site audit
One authoritative plan composes a bounded site-twin refresh, crawler diagnostic, and paid answer check; a tenant-scoped catalog preserves exact phase, artifact, operation, partial-state, and recovery receipts across native UI, Copilot, and MCP.
-
Shared runtime controls
Sweep, generation, and cycle workers share a serialized monthly credit budget, concurrency semaphore, failure stop loss, checkpoint receipts, and cooperative running cancellation at safe boundaries.
-
Closed event-to-plan runtime
Seven closed product-receipt classes compile into bounded deterministic sweep/cycle DAGs with immutable plan history, producer coverage, dispatch-unknown truth, stable child identities, and one explicitly confirmed recovery replay that never authorizes publication.
-
Exact demand ratification
A retained query, page, date, country, and device cell can be reviewed, rejected, or promoted into one tracked buyer question with immutable source fingerprint, current-state revalidation, bounded safe readback, and no provider or generation spend.
-
Buyer-language discovery
Bounded caller corpus and persisted answer-engine fan-out are scored into exact reviewable question proposals behind an actor-bound stored plan; raw corpus and fan-out remain outside public previews.
-
Dated live provider, CMS, alert/SLO, retention, and causal-canary certification is still required per workspace.
-
Rendered DOM, hreflang, crawl logs, backlinks/authority, full entity coverage, and governed graph execution remain staged.
-
Qualified traffic, conversion, pipeline, revenue, brand, and confidence-adjusted ROI are not yet the learning objective.
-
The closed event-to-DAG substrate, source producers, immutable history, and confirmed recovery replay are shipped. Rolling runtime windows, richer portfolio alerting, and provider-native interruption of already in-flight calls remain staged.