Enter password to view

Where We Are

From workflows to a platform

Navi Today

Flowchart of current Navi workflow with central routing agent and assistant branches

Target Architecture

Agent architecture diagram showing agent, tool calls, skills registry, and CSP APIs
1 / 4

Cloud Security Model

The architecture in one picture

Isolation Boundary — Firecracker microVM
Agent Loop model + skills + tools
Gateway / Proxy
CSP Production APIs
Injects credentials Validates scope Enforces tenant identity Rate limits
State: context window · memory · working files
Immutable audit log at both layers — every tool call, every API request, every result

The isolation boundary keeps suppliers apart. The gateway keeps credentials out of the model's hands. Logging happens at both layers.

2 / 4

Design Philosophy

Infrastructure, not prompts

Tenant isolation must be enforced at the infrastructure layer. The model cannot be trusted to respect boundaries via prompt instructions alone.

1

Tenant identity bound at authentication

Supplier A's agent physically cannot reach Supplier B's data

2

Credentials never touch the model

Gateway injects auth into outbound requests — the agent generates intent, not credentials

3

Every action logged and replayable

Immutable audit trail — "the AI did something" is never an acceptable explanation

This aligns with Anthropic's secure deployment model, OWASP LLM06 (complete mediation), and the pattern used by every major agent platform (Manus, Devin, Codex, E2B).

3 / 4

Next Steps

What we need from you

01

Isolation model

Your read on the right execution isolation pattern for Coupa — Lambda, Fargate, or direct Firecracker?

02

Existing infrastructure

API gateways, auth patterns, audit systems we can build on rather than building from scratch.

03

Compliance path

What the Architecture Steering Committee needs to see to greenlight a system with model-driven autonomy.

04

AWS introductions

Solutions architects who specialize in multi-tenant agent runtimes and Firecracker-based isolation.

05

Your involvement

Advisory, co-design, or hands-on? We want to match your preferred level of engagement as we move from alignment to action.

4 / 4