Public roadmap

DevSecure Intelligence Public Roadmap

See what is live, what is coming next, and where customer demand will steer integration work. DevSecure Intelligence stays API-first, evidence-backed, and practical for security teams.

Canonical API host

api.intelligence.devsecure.io

Available Now

Available Now

Production vulnerability intelligence surfaces that help teams rank CVEs by real-world risk.

  • Vulnerability Prioritisation API
  • CVE lookup (GET /api/v1/cve/{id})
  • Batch prioritisation (POST /api/v1/prioritize)
  • RPS scoring (CVSS + EPSS + KEV + exploit signals + patch evidence)
  • Threat Landscape dashboard
  • Methodology page
  • OpenAPI 3.0 spec + Postman collection
Available Now

Available Now - LLM and Agent Discoverability

Stable discovery paths for AI tools that need DevSecure Intelligence as a query-time API.

  • llms.txt and llms-full.txt
  • "When to use DevSecure Intelligence" guidance
  • LLM integration examples (ChatGPT, Cursor, LangChain, MCP placeholder, function-calling)
  • Clear OpenAPI and Postman discovery
  • Anti-scraping / no-training terms in Acceptable Use Policy
  • Canonical API host: api.intelligence.devsecure.io
Coming Next

Coming Next - Customer Integration Channels

Practical paths for calling DevSecure Intelligence from developer workstations and CI.

  • DevSecure CLI
  • curl and jq examples
  • Python SDK
  • GitHub Actions integration
  • Public changelog
Planned

Planned - Proactive Alerting

Alerts for material exploitability movement, patch evidence, and threshold changes.

  • KEV alerts
  • RPS threshold alerts
  • EPSS jump alerts
  • Public exploit signal alerts
  • Patch intelligence alerts
  • Email, Slack webhook, dashboard notification
In Design

In Design - Weekly Exploit Intelligence Notes

A concise weekly intelligence note is being shaped around ownership, source review, and distribution.

  • Blocked until content ownership confirmed
Later

Later

Additional ecosystem channels that follow after the core API, CLI, and alerting surfaces mature.

  • Go SDK
  • Outbound webhooks
  • Slack slash command
  • Microsoft Teams alerts
  • VS Code extension
  • MCP server for AI agents
Not Planned

Not Currently Planned

Browser-extension work stays out of scope unless customers make the workflow concrete.

  • Chrome browser plugin (build only on customer demand)

Need an integration we haven't built yet?

Request scanner imports, CI/CD targets, Slack/Teams, ticketing systems, SDK languages, or enterprise reporting formats.

Request an integration