Roadmap
This page shows where psLens is headed next so you can judge how well it fits the way your team works today and what you may want from it next. Recent releases delivered an embedded Model Context Protocol (MCP) server for live AI agent integration and native OpenID Connect (OIDC) Single Sign-On. Current roadmap priorities focus on Segregation of Duties (SoD) analysis, cross-environment security drift, structured user-action audit logging, and expanded operational observability.
If a specific planned feature matters to your evaluation, bring it up on the demo call. The roadmap is part of the sales conversation precisely because customer demand changes the order.
Recently Delivered
These capabilities originated on the roadmap and are now shipped in psLens:
- Embedded Model Context Protocol (MCP) Server. A native MCP server running directly inside the psLens Go process over Streamable HTTP (
/mcp) and HTTP+SSE (/mcp/sse). Exposes 20+ specialized tools across metadata exploration, PeopleCode extraction, reverse dependency traversal, security access auditing, operational triage, and cross-environment drift comparison. Secured via Personal Access Tokens (psl_mcp_...). See MCP Server. - Native OpenID Connect (OIDC) Single Sign-On. Direct integration with enterprise Identity Providers (Microsoft Entra ID, Okta, Keycloak, Auth0, Google Workspace) via OAuth 2.0 PKCE, JWKS key verification, and group claim checks without requiring a reverse-proxy sidecar. See Authentication & Access.
- Campus Solutions Security Integration. Discovery and auditing of 9 Campus Solutions row-level security tables, user defaults inspection, and inclusion in Full User Access reports. See Campus Solutions Security.
- Live Field Alias Discovery. Real-time detection of prompt table alias hierarchies and canonical field mappings to resolve schema naming variations. See Fields.
- Code & SQL Full-Text Search. Direct text search across stored PeopleCode, SQL objects, and Application Engine statements. See Code & SQL Search.
Planned Capabilities
Security & Governance
- Segregation of Duties (SoD) & Business Operation Matrix. Rule-based auditing to detect users holding conflicting access grants across critical business operations (e.g. creating vendor definitions and approving vouchers, or modifying employee banking details and running payroll).
- Cross-Environment Security Object Comparison. Direct drift comparison of Roles, Permission Lists, and User account assignments across DEV, TEST, and PROD, identifying permission creep and unauthorized production modifications.
- Object Labeling and Pillar Classification. Tagging and categorizing PeopleSoft objects by business pillar (HCM, FSCM, CS) or custom organizational tags to scope audits, access reviews, and alerts.
Administration & Observability
- Admin-Facing Session Management UI. Administrative interface to inspect active user sessions, view authentication metadata, and invalidate sessions individually or in bulk. See Authentication & Access → Session Management.
- Prometheus
/metricsEndpoint. Metric scrape endpoint exposing HTTP request latency, active database connection health, SWS query rates, and alert check durations for Prometheus and Grafana. See Deployment & Operations → Monitoring. - Search Framework & Index Health. Status checks and health diagnostics for OpenSearch and Elasticsearch clusters configured in the PeopleSoft Search Framework.
Compliance & Supply Chain
- SOC 2 Type II Certification. Formal SOC 2 audit engagement and certification. See Compliance & Vendor → SOC 2.
- Container Image Signing & SLSA Provenance. Sigstore Cosign image signatures and automated SLSA build provenance attestations for container image distribution. See Code & Supply Chain.
Missing a report, alert, or automation?
We are open for product feedback. New reports and alerts are modules in an existing framework (the 26 reports and 18 alert types in psLens today were added one module at a time), so a request that fits that framework is usually the fastest kind of item to ship.
If your audit needs a report psLens does not have, or you want a recurring security check automated, tell us. psLens is onboarding design partners, and partner requests set the build order.
How to influence the roadmap
Three ways an item moves up the queue:
- It blocks a deal. Tell us during contracting.
- It blocks a deployment in progress. Tell us in the customer Slack channel or via the contact page.
- It is something many customers have asked for independently. We watch for patterns across customer conversations and re-rank when one emerges.
We do not run a public voting board. We do read every email.