01
Stripe Issuing Integration
Done: No
Revenue
GARD mandate wrapping Stripe virtual cards. The integration that makes GARD + Stripe the complete enterprise stack. This is the demo for the VC banker and the Stripe ISV pitch.
02
Token Security Hardening
Done: No
Security
Nonce + timestamp replay prevention. Closes the most exploitable current gap. Two hours of work, massive security improvement.
03
Behavioural Baseline Engine
Done: Yes
Intelligence
Agent learns its own spending pattern. Deviation triggers elevated risk score. Closes the compromised agent detection gap. This is the item already implemented now and it is based on RAG.
04
Vanta-Ready Audit Export
Done: No
Compliance
SOC 2 compliant audit log export. The compliance wedge. This is what gets GARD into enterprise deals.
GARD guardrail callable as an MCP tool. Any agent passing through Portkey's gateway can call GARD before making a payment. Distribution through 24,000 Portkey customers.
06
Salesforce ISV Headless 360 Partner Integration
Done: No
Partners
Salesforce ISV headless 360 partner integration so GARD can sit inside Salesforce-led agent and commerce flows as the payments governance layer. This sharpens enterprise distribution and partner-led adoption.
Updated interface showing all new capabilities: Stripe integration status, behavioural baseline charts, and the SOC 2 export button.