A change can skip important checks
Required details, dependencies, or review steps sit outside the workflow that moves the change toward release.
Security-critical operations
Teams can manage change workflows, dependencies, procedures, and AI proposals in a self-hosted or fully air-gapped TOW deployment.
Common problems
Teams need to see the required review steps, the technical details behind a change, and how generated output is approved.
Required details, dependencies, or review steps sit outside the workflow that moves the change toward release.
The dependency map, implementation record, and operating procedure no longer describe the same work.
A generated answer has no visible sources, or a proposed change has no clear review step.
In TOW
These examples cover controlled work records. They do not provide continuous security monitoring or replace your organisation’s assurance process.
Add peer review and a release gate between authorised work and release, with blocked and withdrawn paths in the same workflow.
Keep backlinks, references, and related change records on the procedure so responders can find the right information together.
Show the target, reason, and proposed change in the review queue, with controls to accept or reject it.
Before deployment
TOW can run in a fully air-gapped Docker Compose environment when every dependency stays inside it. Your organisation remains responsible for architecture, hardening, monitoring, recovery, and operational assurance.
Keep the application and its dependencies inside infrastructure your organisation controls.
Search and AI only use sources the person is allowed to access.
Configure or disable the provider and decide which supported workflows require review.
FAQ
Current product, deployment, and commercial boundaries.
Yes. TOW can run as a fully air-gapped Docker Compose deployment when the application and every dependency, including any AI provider, stay inside the isolated environment.
No. TOW provides administration and work-management features. Infrastructure and security monitoring remain part of your own operating environment.
Yes. Administrators can disable or configure the organisation AI provider. Supported proposal flows have accept and reject controls, while any direct-write agent workflows must be enabled separately.
See TOW in your environment