Product roadmap

Shipped, in progress, planned.

The CVEasy roadmap is kept as a ledger. Every row is dated, and every shipped row carries the release that delivered it, so this page can be checked line by line against the changelog.

01 · Platform vision

The full security operations suite

Three products. CVEasy AI™ and BASzy™ AI launched April 1st, 2026 and ship as one application; SAFEty Guard AI is in development for Q3 2026. A CVEasy AI license is your entry point to the platform, and early adopters lock in preferential pricing on everything we build.

01Shipped · April 1st, 2026

CVEasy AI™

Vulnerability management

AI-powered CVE ingestion, TRIS™ scoring, remediation runbooks, triage queue, ACT/ATTEND/TRACK/MONITOR sprint board, compliance tracking, executive reporting.

Contact sales
02Shipped · April 1st, 2026

BASzy™ AI

Breach & attack simulation

AI-adaptive adversary emulation with 158,271 attack payloads, MITRE ATT&CK mapping, and the AutoFuzz™ zero-day discovery engine. Ships integrated with CVEasy AI™ as part of the complete CTEM platform.

Learn more
03In development · Q3 2026

SAFEty Guard AI

EDR & endpoint protection

Lightweight EDR agent with continuous asset discovery, real-time vulnerability detection, and behavioral monitoring. Accessible endpoint protection for organizations of all sizes.

In active development
02 · Delivery ledger

What shipped, and what ships next.

Shipped rows carry the changelog version that delivered them; check any line against the release notes. Open rows carry the quarter we are building toward. All of it is included in your Standard license.

April 2026Shipped

CVEasy AI v1: hard launch

  • Native macOS app (Apple Silicon)
  • 361,000+ CVEs pre-loaded
  • TRIS™ scoring engine
  • Local AI: the cveasy-ai-v1 engine runs on-device
  • ACT/ATTEND/TRACK/MONITOR remediation sprint board
  • Executive reporting
April 2026Shipped

BASzy™ AI: breach & attack simulation

  • 158,271 attack payloads (MITRE ATT&CK mapped)
  • AutoFuzz™ zero-day discovery engine
  • Remediation Proof Engine (closed-loop verification)
  • Live Attack Surface Canvas (interactive network map)
  • Ships integrated with CVEasy AI™, one application
May to June 2026Shipped

Workflow + first integrations

  • In-app alerts for new high-risk CVEs
  • CSV/Excel export and saved search filters
  • Ticket creation: Jira, ServiceNow, GitHub Issues, Linear, Monday.com
  • SBOM ingestion (CycloneDX, SPDX)
  • AI patch orchestration through Intune, Automox, Tanium, Jamf Pro, PDQ Connect
July 2026Shipped

The connector release: 121 tools

  • Unified connector catalog: 121 integrations across 16 categories, with 27 native auto-sync API connectors led by Rapid7 InsightVM, Tenable.io, Qualys VMDR, CrowdStrike, SentinelOne, and Defender TVM
  • Identity-based cross-tool deduplication, ~75% average ticket reduction
  • Webhook ingest for 13 more formats, with multi-tenant workspaces for MSSPs
  • Cloud Scan Engine: AWS, Azure, GCP with 204 CIS-tagged checks and attack-path graphs
  • Fix First remediation board: TRIS-ranked work orders with SLA timers
  • Claude MCP server: native agent interface, Anthropic Claude Network Partner
  • Signed threat-intel bundle pipeline with air-gapped delivery
Q3 2026In progress

Team collaboration + multi-platform

  • Multi-user roles and assignment
  • Audit log
  • Windows and Linux support
  • Docker deployment option
Release reflands in the changelog on ship
Q3 2026In development

SAFEty Guard AI: EDR & endpoint protection

  • Lightweight EDR agent for continuous asset discovery
  • Real-time vulnerability detection without scheduled scans
  • Behavioral monitoring with TRIS-integrated alerting
  • Cross-platform: macOS, Windows, Linux
  • Ships as standalone product
Release reflands in the changelog on ship
Q4 2026Planned

Bi-directional ITSM sync

  • Two-way status sync with Jira and ServiceNow
  • Ticket resolved means the CVE is automatically re-scanned
  • SLA reporting across ticketing systems
Release reflands in the changelog on ship
2027Planned

CVEasy EDR agent

  • Lightweight endpoint agent for continuous asset discovery
  • Real-time vulnerability detection without scheduled scans
  • Behavioral monitoring with TRIS-integrated alerting
  • Zero cloud dependency, reports to local CVEasy server
Release reflands in the changelog on ship

Get in at the ground floor.

Contact sales to get started. Your license includes 12 months of updates and access to every new feature we ship.