All capabilities

All the capabilities, by workspace.

Each module of the ColossalX console, grouped by the six workspaces it lives in. Filter by what it does, then hover or tap a tile for the detail.

In short

All capabilities is a visual map of the ColossalX console: each module as one tile, grouped by its six workspaces (Command Center, AI Gateway, Agent Security, Risk and Testing, Compliance and GRC, Administration) and by verb. Each tile gives one line on what the module does today, with detail on hover or tap.

Last reviewed

A long module list hides which ones answer your question, and which are still partly built.

Each module is described as it works today, grouped by workspace and by verb.

Command Center

Your first screen: posture, open work and the assistant.

  • DashboardHow safe and governed your AI is today

    See. One screen shows the trust grade, the alerts that matter, the traffic the gateway handled and where compliance stands. A count that cannot be read shows a dash, never a zero.

  • Issues One queue of owned work, closed on evidence

    Govern. Findings from testing, scanning, intelligence, audit and compliance land in one issue with an owner and a due date. A risk acceptance has to expire, so work cannot quietly disappear.

  • InsightsWhat needs acting on this week, in order

    See. Measured insights such as overdue fixes, untested agents and spend spikes, each with its evidence and the rule that fired. An AI brief ranks them and must cite them.

  • Trust Score A grade that explains why it moved

    Govern. Five pillars, graded A+ to F, with what pulls the score down and which evidence is missing. A grade resting on thin evidence is labelled provisional.

  • MonitoringHealth of the platform itself, by component

    See. A live health check lists each service of the platform with its current status, so IT can confirm the workspace itself is running.

  • Assets & Topology Providers, agents and sensitive data, one map

    See. An interactive map of the AI supply chain: model providers, agents and the classified data around them, with live status on each node. Where a list cannot be read, it says so.

  • Assistant Ask your security workspace in plain language

    See. Nine lookups and nine confirm-first actions run under your own permissions. When an answer is an action, it arrives as a card you approve, never something the model runs itself.

  • My PoliciesPolicies in force, accepted by each person

    Govern. Published policies show their version and owner. People accept each one by version, and a new version asks again, leaving the record an auditor will ask for.

AI Gateway

Each model call governed, from keys to consent.

Agent Security

Find, identify, admit, test and contain agents.

Risk & Testing

Quantify risk, then attack your own defences.

Compliance & GRC

Frameworks, evidence, audits and policies for the regulator.

Administration

Identity, access, integrations and the product's own AI.

  • Security & PrivacySet what employees may upload to the Assistant

    Control. Set which files employees may upload to the Assistant, with a size cap and allowed file types, and choose to block sensitive content before it reaches a model.

  • Integrations Connect your SIEM, ticketing, cloud and identity tools

    Govern. For each connection, see what ColossalX reads, does and never does. Test it, rotate or revoke it from the row, and set up signed outbound and verified inbound webhooks.

  • MarketplaceA catalogue of 120+ integration templates

    Govern. Search templates across SIEM, cloud security, identity, DevOps, ticketing and more, and connect from the card. Depth varies: three SIEMs send natively and the rest receive by signed webhook.

  • Identity ProvidersSingle sign-on with the accounts people have

    Govern. Connect a SAML provider by pasting its metadata, with just-in-time provisioning and Microsoft Entra directory sync. People sign in with the accounts they already have.

  • Access ManagementMap directory groups to access levels once

    Govern. Map directory groups to access levels once, with custom roles down to the page, MFA required by role and an allowed email-domain list. Each screen tailors itself to the role.

  • API Keys Scoped keys that never outlive their maker

    Govern. Create a key with a lifetime and only the scopes the API checks. A key can never exceed its maker's permissions, the secret shows once, and a CI preset is ready.

  • AI ModelsChoose where ColossalX's own AI runs

    Govern. Run ColossalX's own AI features on a managed model, your own model and key, or a self-hosted endpoint, per feature, with a live test. Each internal AI call is recorded.

  • Browser Extension See AI tools on laptops, local models too

    See. A browser sensor, rolled out by browser policy, finds AI tools on laptops including local models that no network log can see. It is tested never to read a prompt.

  • Data ProvenanceEach record says where it came from

    Govern. Each record is labelled demonstration data or created by your own use, so evaluation numbers can be trusted. Counts are shown per table.

Honest by design

What this page does not claim.

This page · stated, not impliedIllustrative

This page · stated, not implied: Scope Console modules, one tile each; Described As they work today; Left out Plumbing and placeholders; Count Taken from the tiles. Stated, not implied.

x, not measured

Tiles describe what a module does today; a partly built module is described by what works.

All 3 limits
  • Plumbing such as email delivery and help guides is left out.
  • Frameworks are mapped to and assessed against; ColossalX holds no certification.

Questions

Questions buyers ask

What does All capabilities cover?

It lists each module in the ColossalX console, grouped by the six workspaces: Command Center, AI Gateway, Agent Security, Risk and Testing, Compliance and GRC, and Administration. Each tile gives one line and a short detail, written from what the module does today, not from what is planned.

Which modules are left out, and why?

Plumbing such as email delivery and help guides is left out, and so is any page that is a placeholder today. Where a module is only partly built, its tile says what it does now. The count above the tiles is taken from the tiles themselves, so it cannot drift from the page.

How do the verb and workspace filters work?

See, Control, Prove and Govern say what a module does: find AI, stop unsafe behaviour as it happens, show defences hold, or answer to the board and the regulator. Choose a verb, a workspace or both. A choice with no tiles is dimmed, and the count updates as you filter.

Where can I read more about one capability?

A tile with a page of its own links to it. Hover, focus or tap a tile for its detail, which is also written into the page for readers and crawlers, and into the Markdown copy of this page. A walkthrough shows the product itself, with your own questions.

Next step

Know your x.

Pick the workspace you care about and bring your own questions to a walkthrough of those modules.

  1. 01Pick a workspace
  2. 02Bring your own questions
  3. 03Decide where to start