Product Roadmap

Business SaaS Roadmap

Inaya is building a business software layer that makes decentralized infrastructure simple and invisible to Web2 users.

The underlying DePIN infrastructure remains the foundation. The SaaS layer on top is what businesses actually see and use.

Architecture

Inaya DePIN Infrastructure
Secure Decentralized Storage
Business Workspace
Document & Workflow Management
AI Business Assistant
Business SaaS / ERP Modules
01

Secure Business Foundation

Live

A secure workspace where businesses can organize teams, projects and documents while using Inaya's privacy-first storage infrastructure underneath.

  • Business Workspace
  • Company / organization accounts
  • Passwordless magic-link authentication
  • Departments
  • Projects
  • Team members
  • Invitations
  • Business document management
  • Encrypted document storage
  • Decentralized storage infrastructure
02

Document Workflow

Live

Transform business documents from simple stored files into controlled business records with approval workflows and traceable history.

  • Document ownership
  • Draft state
  • Pending submission
  • Under review
  • Approved
  • Rejected
  • Revision & resubmission
  • Archived
  • Restore
  • Immutable activity history
DraftPendingUnder Review
ApproveAPPROVED
RejectREJECTED
REJECTEDRevise & resubmitDRAFT
APPROVEDArchiveARCHIVED
ARCHIVEDRestoreAPPROVED
03

Enterprise Permissions & Secure Sharing

Live

Give businesses granular control over who can access, edit, manage and share business information.

  • VIEW / EDIT / MANAGE permission levels
  • Organization-level (owner/admin) access
  • Explicit per-document grants
  • Department & project scoped access
  • Private documents
  • Cross-organization isolation
  • Secure external sharing links
  • Share expiration
  • Share revocation
  • Maximum share usage limits
  • Hashed share tokens
  • Activity tracking
04

AI Business Assistant

Live

Ask questions about your business workspace using natural language. The AI operates only on information the authenticated user is already authorized to access.

AI permissions never exceed the user's permissions.

  • Permission-aware AI
  • Business document search
  • Department discovery
  • Project discovery
  • Activity & history queries
  • Document access queries
  • Natural-language business questions
  • Integrated into the Business Workspace
  • Available on web and mobile

Implemented AI tools

list_documentslist_departmentslist_projectslist_taskslist_contactslist_dealslist_supplierslist_purchase_orderslist_purchase_requestslist_productslist_invoiceslist_expenseslist_employeeslist_leave_requestsfind_employee_documentget_activityget_document_accessget_business_insightsget_business_brief

Live today in both the web and mobile Business Workspace, powered by the exact same permission-scoped tools on the backend. Read-only here — for the AI's ability to propose real changes (never execute them directly), see Stage 9.

05

Desktop & Native Apps

Live

The Business Workspace as a real installed application — its own icon, tray presence, native notifications and auto-updates, not just a browser tab.

  • Windows installer (NSIS)
  • Linux installer (AppImage)
  • Linux installer (.deb)
  • System tray & minimize-to-tray
  • Native application menu (File / Edit / View)
  • Native desktop notifications for pending approvals
  • Signed, auto-updating releases
  • Google Sign-In support inside the native app window
  • Magic-link email sign-in support
  • Combined download page for Windows & Linux

Same Business Workspace, same permissions and encryption, running in its own window instead of a browser tab. macOS is not available yet.

06

Business Operations

Live

Manage projects, tasks, customers, purchasing, and inventory from the same secure workspace as your documents.

Projects & Tasks

  • Tasks
  • Assignments
  • Deadlines
  • Status tracking
  • Team collaboration

CRM

  • Customers
  • Leads
  • Deals
  • Customer records
  • Sales pipeline

Procurement

  • Suppliers
  • Purchase requests
  • Purchase orders
  • Approval workflows

Inventory

  • Products / items
  • Stock levels
  • Warehouses
  • Stock movements

All four modules are real and shipped: task status workflows, a unified Lead/Customer CRM with a sales pipeline, purchase requests/orders with a real approval chain, and inventory with real stock movements — including purchase orders that actually move inventory when received. Every record is department-scoped and queryable by the AI assistant. See BUSINESS_OPERATIONS_TASKS.md, _CRM.md, _PROCUREMENT.md, and _INVENTORY.md for what's covered and what's explicitly not yet (e.g. warehouse-to-warehouse transfer UI, PO line-item editing after creation).

07

Finance & HR

Live

Secure financial and people-management capabilities built directly into the Business Workspace.

Finance

  • Invoices
  • Expenses
  • Payments
  • Accounting records
  • Financial workflows
  • Financial reporting

HR

  • Employee records
  • Employee documents
  • Leave management
  • HR workflows
  • Department administration

Both modules are real and shipped: invoices with a cron-driven overdue status, expense approval workflows, payment recording/approval, and CSV financial reporting; employee lifecycle management, computed leave balances, leave approval, and Department Manager assignment. A testnet demonstration/validation layer, not regulated banking, tax filing, or payroll processing — every Finance/HR screen carries a visible "Testnet / Beta" badge. See BUSINESS_OPERATIONS_FINANCE.md and _HR.md for what's covered and what's explicitly not yet (e.g. no PDF invoice generation, no multi-currency conversion).

08

Business Intelligence

Live

Inaya Business Insights & KPI Dashboard — business activity turned into live dashboards and AI-generated insight.

  • Business dashboards
  • KPI cards (revenue, expenses, pipeline, task completion, headcount, low stock, pending approvals)
  • Period-over-period comparison
  • Revenue/expense/task/deal trend charts
  • Business alerts (overdue invoices, low stock, overdue tasks, significant KPI swings)
  • AI-generated summaries
  • AI business insights
  • Natural-language reporting
  • Daily / Weekly / Monthly / Yearly Business Brief
  • “How's the business doing this month?”
  • “Any alerts I should know about?”
  • “Explain why revenue changed this period.”
  • “Give me my weekly brief.”

Real and shipped: KPI cards, period-over-period comparison, trend charts, and business alerts all compute from the same permission-scoped data every other Business Workspace module already reads — no separate, weaker-scoped path. The AI Business Assistant answers KPI/trend/alert questions directly via a dedicated get_business_insights tool. The Business Brief (new 2026-09-01) is a periodic recap on the same real data — deterministic highlight bullets plus a best-effort AI narrative paragraph on top, available as its own Workspace view and conversationally via get_business_brief. See BUSINESS_OPERATIONS_INSIGHTS.md for what's covered and what's explicitly not yet (no custom date-range picker, no trend charts on mobile yet).

09

AI-Powered Business Operations

Live

The AI Business Assistant can propose real changes across 9 business domains — it never executes anything itself. A human with the exact same real authority the underlying action would require must approve; the server independently re-validates that authority; a mandatory 36-hour delay passes; only then does the change execute — and every step is recorded in a tamper-evident, cryptographically verifiable audit trail.

AI recommends. Humans authorize. The server validates. The system executes. The audit trail remembers.

  • Guarded task status changes
  • Guarded expense decisions
  • Guarded document workflow transitions
  • Guarded employee status changes
  • Guarded invoice actions
  • Guarded leave request decisions
  • Guarded purchase order transitions
  • Guarded purchase request transitions
  • Guarded CRM deal pipeline moves
  • Risk classification (LOW / MEDIUM / HIGH)
  • Proposal expiration for unreviewed requests
  • 36-hour mandatory delay after approval
  • Cryptographically hash-chained, tamper-evident audit trail
  • Self-service, independently verifiable audit export (JSON / CSV)

Real and shipped across 9 domains, covered by 19 automated tests including 11 adversarial security scenarios (forged approval, cross-tenant access, replay, expired-proposal execution, prompt injection, and more — all fail safely). Explicitly not yet covered: AI-driven record creation (a new task/contact/etc.), task reassignment, transaction categorization, and drafting/sending customer communications — none of these exist anywhere in the app yet, gated or not, so there's nothing yet to guard. See docs/ai-controlled-actions.md for the full phase-by-phase breakdown.

10

Healthcare & Legal OS

In Progress

Two vertical specializations of the Business Workspace — Health OS and Legal OS — for organizations handling patient or client/matter data, picked at company signup or changed later in Settings.

Patient and matter visibility is assignment-based, not department-based — being in the right department is never enough on its own.

  • Patient registry & Patient 360 — appointments, consent, ROI, billing, care team (Health OS)
  • Emergency access review & de-identified research datasets (Health OS)
  • Matter registry & Matter Workspace — team, deadlines, evidence, holds, discovery, redaction, contracts, time & billing, trust accounting (Legal OS)
  • Clients, Prospects, and Corporate Entities (Legal OS)
  • Care-team / matter-team assignment-based access
  • Break-glass emergency access (audited, time-limited, reviewable)
  • Legal holds that actually block deletion
  • Trust accounting with an overdraft-safety guard
  • Vertical-locked API — a general or mismatched-vertical org is rejected, not just hidden from
  • Mobile screens for both verticals (Health OS, Legal OS)
  • Health/Legal AI assistants (read/summarize/draft only — no diagnosis, no legal advice, no filing, no hold release, no evidence deletion)

Every domain module for both verticals now has a real, working screen in Business Workspace — not just Patients and Matters — live-verified end-to-end against the running app, including the trust ledger's server-side overdraft rejection. Mobile now has real screens for both verticals too (Health OS, Legal OS, and their patient/matter detail screens), built against the exact same vertical-locked API routes as web; these are written and syntax-verified but not yet exercised on a live device/simulator, which is the one thing still holding this at IN_PROGRESS rather than LIVE. FHIR/HL7/e-filing/e-signature/SSO and every other third-party integration are documented adapter interfaces with an honest not-configured stub, not live integrations. No HIPAA/ABA/eDiscovery compliance certification exists or is claimed.

11

Financial Services & Regulated Enterprise OS

Live

A third and fourth vertical specialization of the Business Workspace — Financial Services OS (hedge funds/asset managers), Private Capital OS (PE/VC), and Regulated Enterprise OS (cross-industry compliance for banks, insurers, pharma, and other regulated organizations) — sharing one platform core with Health OS and Legal OS. All ten phases of the SOW are now built.

A framework or control mapping is never presented as a compliance certification — and a control with no test on file shows as "unknown," never as passing.

  • Regulatory Framework Engine — pluggable reference mappings (NIST CSF 2.0, ISO 27001, SOC 2, DORA, GDPR, GLBA/Reg S-P, SEC IA) with an explicit compliance-is-not-certification disclaimer
  • Compliance Control Library, Evidence vault, Findings & Remediation, versioned Policy Management, compliance exceptions, internal audit plans, and a Regulatory Examination Workspace with scoped one-time-use external examiner links
  • Financial Entity Core — funds, entities, investors, counterparties, entity-scoped (not org-wide) permissions
  • Investment Management — research provenance, investment thesis lifecycle, Investment Committee workflow, portfolio/position/exposure tracking, liquidity, valuation, performance
  • Private Capital — deal CRM, screening scorecards, due diligence workspace, term sheets, cap-table ingest (not a transactional share registry), portfolio-company workspace, board management, value creation plans, fundraising, exits, SPVs
  • Security & Resilience — vendor-risk monitoring, ICT asset inventory, BCP/DR, resilience testing, data residency, privileged access & break-glass, segregation-of-duties rules
  • Role-specific AI copilots (CIO/COO/CCO/CRO/CFO/GC/analyst/deal-team/security/auditor) on the same guarded-execution infrastructure as every other AI tool in the app
  • Integration Adapter Architecture — fund admin/custodian/prime broker/market-data/cap-table/KYC-AML/SSO, honest stub-by-default (configured:false) until a real credential exists
  • Executive/Board Layer — Financial Services & Regulated Enterprise OS Homes, board reporting with the same publish-immutable discipline as policies
  • External Data Rooms — investor, diligence, and audit rooms, generalizing the examiner-access pattern
  • Enterprise Hardening — tamper-evident regulated export packages, pre-import migration validation
  • Vertical-locked API across every phase — a general or mismatched-vertical org is rejected, not just hidden from

Live-verified end-to-end against the running app across every phase: control creation and activation, a failing test auto-opening a finding and walking its full state machine to closed, the dashboard's unknown/failing/passing distinction, the full policy lifecycle including the immutability guard and amend-creates-a-new-version behavior, an examiner magic-link's issue/exchange/one-time-use cycle, entity-scoped fund/deal visibility, and the board-report/export-package immutability guards. Not yet built: mobile screens for these verticals (Financial Services OS/Private Capital OS/Regulated Enterprise OS have zero mobile presence today — web only), and real third-party integrations (every adapter is a documented, honest not-configured stub). No compliance certification of any kind exists or is claimed.

12

Government & Public Sector Sovereign OS

In Progress

A fifth vertical specialization of the Business Workspace, for government departments and agencies handling citizen, legal, financial, procurement, health, and operational data — sharing the same platform core as every other vertical above.

Citizen-record visibility is assignment-based, not department-based — being in the right department, or even holding staff-level government access, is never enough on its own to see a specific person's record.

  • Citizen Records — need-to-know, assignment-based access, mirroring Health OS's care-team model exactly
  • Case Management — a 6-state case workflow, optionally linked to a citizen record, with need-to-know inherited from that link
  • Policy Knowledge Base — the same publish-immutable, versioned lifecycle as Regulated Enterprise OS's Policy Management
  • A government-only stricter chain-of-custody rule — every document READ is logged, not just every write
  • Break-glass emergency access — reused unchanged from the Financial/Regulated Enterprise SOW's cross-vertical privileged-access module
  • Operations + Security Readiness dashboard — case KPIs and audit-chain integrity, always reported as separate honest panels, never a single fabricated score
  • Government AI assistant — 6 read-only tools; need-to-know is enforced inside the tool itself, not just at the API layer, so it can never see more than the human it's acting for could
  • Procurement/Contracts/Finance/HR/Tasks/Approvals — the same modules every other vertical already uses, now vertical-gated for Government orgs too
  • 5 stub-by-default government-system integration providers (civil/national ID registry, legacy government ERP, GIS/land records, public records portal, interagency data exchange)
  • Vertical-locked API — a general or mismatched-vertical org is rejected, not just hidden from

Live-verified: the Government OS vertical option renders correctly in the org-creation flow, and every new API route is statically confirmed to lock to the government vertical. 51 new automated tests cover the two load-bearing properties (citizen-record access requires an actual assignment; a published policy knowledge base entry can never be mutated in place) plus case-workflow transition legality, dashboard honesty (unknown is never shown as passing), and AI tool need-to-know enforcement. Not yet built: mobile screens (Government OS has zero mobile presence today, same gap as Financial/Private Capital/Regulated Enterprise OS), a real pilot-agency onboarding, and any government-specific procurement rule beyond an explicitly informational, non-binding competitive-bid threshold flag. No government certification, accreditation, FedRAMP authorization, or jurisdiction-specific compliance claim exists or is claimed — that requires separate authorities entirely outside this codebase.

The Inaya Business Platform

Inaya's long-term goal is to make decentralized infrastructure invisible to everyday business users.

Businesses should experience a familiar SaaS platform for documents, projects, teams, workflows, operations and business intelligence.

Underneath that experience, Inaya provides privacy-focused decentralized infrastructure, encrypted storage and verifiable data integrity.

Make decentralized infrastructure as easy to use as traditional cloud software.