ProductWays in
The agent in your networkpreview
One program inside your network. It dials out, and your policy wins.
iohr-agent runs checks where your systems are: the database behind the API, the internal service, the node on a private network. It opens one connection out to the platform and listens on nothing, does only what a local policy file allows, and reads a credential from your vault or cluster at the moment of a call. Pre-releases only so far.
Early access: partners get in by request and a signed NDA. No SLA while it lasts.
From the product tour, started at this product's chapter. The narration is an AI voice.
Watch it
Chapters
Space play or pause · ← → 5 s · 1 to 9 chapters · C captions · F full screen
Chapter 8 of the tour: Install and connect · 1:58Watch the whole tourRead the transcript
Each line says how far it is built today. Live means anyone with access uses it; preview means it runs for admins and partners or as a pre-release; coming means it is written down and not built yet.
What it does today
- preview
Checks where your systems are
HTTP (status, latency, certificate expiry), TCP, TLS and gRPC health, for monitors and for checks run on demand. Hosts outside your verified domains are refused before a job is sent.
- preview
It only dials out
One WebSocket to the platform's API host, kept open; nothing listens on your side, so there is no inbound firewall rule to ask for. When the connection drops, work stops.
- preview
Declared in one file
A
checks.tomlsays what it watches; the platform turns each check into a monitor managed by that agent, with its category and tags. It reports its own machine so a devops team sees where and under which rules it runs. - preview
A binary a security team can check
Built from public source in
inorbithr/dataplane, every artifact signed keyless at its tag with SLSA provenance and a CycloneDX SBOM. Linux and macOS, amd64 and arm64, a container image and a Helm chart. - in development
Reading your system for Atlas
Observers for Kubernetes, Envoy, cargo, network policy and the host are built and not in a release yet. Load and faults on your side come later and are refused until then.
The console decides what should happen; the agent does it where the systems are and reports what happened. Your local policy file is checked last, on your machine, and it wins.
How it works
An agent as the console lists it, and the file that declares its checks.
In the console
agent-0 · iohr-agent 0.1.0-alpha.7 preview
online · 4 checks · last seen 2 s ago · linux/arm64 · environment staging
The checks it declares · checks.toml
[[check]]
name = "orders-api"
surface = "http"
target = "https://orders.internal.example/healthz"
every = "30s"
expect = { status = 200, max_ms = 500 }
fail_after = 2
category = "availability"
[[check]]
name = "orders-tls"
surface = "tls"
target = "orders.internal.example"
every = "1h"
expect = { valid_for_days = 14 }Example data
Drawn from the console's own layout. The services, times and numbers are made up for the example.
Every claim on this page has its evidence: the documents that define it, the docs that say how to use it, and the API it runs on.
Proof and links
Documents
- RFC 0029 The agent
- RFC 0082 The agent in one file
- ADR 0043 Customer code processed inside the customer network
Not on the public RFCs host yet, so named here without a link.
API
- RESTliveMake an enrollment, list, read, revoke and delete agents, and run a check through one.
GET /v1/accounts/orgs/{org_id}/agents - iohrpreview
iohr ext install agent, theniohr agent initandiohr agent run. - MCPcomingNot an MCP tool yet: an assistant cannot enroll or run an agent today.
The evidence rule: a model saying it succeeded is never evidence. What counts is what was measured, by what, and when.
Your data, your call
The agent sends timings, status codes and verdicts. Never a request or response body, a header value or a secret: a credential is read from your vault or cluster at the moment of a call and forgotten after.
Logs record who did what and the outcome, never content. Self-hosted models by default; a third-party model provider needs a data processing agreement before it sees anything of yours. InOrbit is not certified: no auditor has attested its controls yet, and the known gaps are listed.
Questions, answered plainly
Do we have to open a port?
No. The agent opens one outbound HTTPS connection and keeps it; nothing listens for the internet on your side.
Can we host the images ourselves?
Yes. The container image, the Helm chart and the packages are signed artifacts you can copy into your own registry and verify there before anything runs.
When does it update?
When you say so. Installed through iohr it is pinned in iohr-ext.lock and nothing changes until you run iohr ext upgrade; with Helm you pick the chart version.
Why preview?
Every release so far is a pre-release, and the part that reads your system for Atlas is not in a release yet. It runs in production on our own platform first.