Synced from Hive. This page is pulled from kubestellar/hive@v4 during the docs build. Edit the canonical source in the Hive repository.

Hive public roadmap

Directional, not a promise. This roadmap reflects the public v4 direction as of 2026-08-07. It is maintained by pull request and can change as issues, security reviews, and operator feedback change the order of work. The umbrella tracking issue is #2812; this page is part of #2811.

Hive’s roadmap is organized as Now / Next / Later: near-term work already in flight, likely follow-ups, and longer-horizon bets. Items are listed in planning order, not priority rank.

Now

WorkOutcomeTracking
Prompt-injection defense-in-depthCanary-token checks, output redaction, and fail-closed scanning build on the existing deterministic ioscan kick-path redaction.#2805, security threat model, ADR-0008
Intent verificationTier-based change authorization is in the merge-gate path; trajectory-integrated intent-alignment review remains the next slice.#2803, intent verification
Review fan-outStructured review reports and deterministic aggregation are in place; scheduler fan-out to parallel review perspectives is the deferred wiring.#2807, review swarm
Credential-free sandbox kick pathMove agent execution toward no live token and no direct network in the sandbox, with trusted host-side post-steps retaining the MITM proxy as an outer layer.#2804, security threat model
Hub-hosted lite executionExtend the current zero-secret hivectl enroll OWNER/REPO advisory enrollment into hub-hosted execution for low-friction adoption.#2808, lite enrollment
Retrospective learning laneBuild from deterministic post-completion advisory beads toward LLM-assisted retro summaries and knowledge extraction.#2809, retro lane

Next

WorkOutcomeTracking
Model-based injection classifierAdd a probabilistic classifier beside deterministic ioscan, with fail-closed policy choices for high-risk inputs.#2805, security threat model
ADR back-fill for remaining subsystemsCapture decisions for the knowledge system, skill registry, CEL/channel triggers, and hub/spoke mechanics so architecture docs stay auditable.#2811, ADR index, knowledge design, agent configuration
Docs site publicationTurn v2/docs/ into a published, navigable documentation site. This PR creates the index; the MkDocs/site pipeline remains deferred.#2811, docs index
GitLab through pkg/forgeMove more GitHub-specific operations behind the forge abstraction and add GitLab support incrementally rather than forking the scheduler.ADR-0005, #2812

Later

WorkOutcomeTracking
Cross-forge orchestrationCoordinate issues, merge requests, policy, and evidence across GitHub, GitLab, and Forgejo/Gitea-style forges.ADR-0005
Memory and learning maturationTurn retro findings and curated knowledge into durable, testable priming without hidden or unauditable agent memory.knowledge design, retro lane
Kubernetes-native agent sandboxesGraduate from tmux/container execution toward k8s-native, policy-isolated agent workloads where that complexity is justified.architecture, security threat model

Reading this roadmap

  • Now does not mean all work is complete; it means active phase-2 work or freshly merged foundations with known wiring still in progress.
  • Next items are expected follow-ups, not release commitments.
  • Later items are strategic directions that may split into narrower issues before implementation.