ORION-AI

Features

Everything in ORION-AI is focused on practical AI SecOps execution with local context, configurable integrations, and repeatable security automation paths.

Local operations workspace

Operate from a single local workspace for day-to-day security workflows with durable project context.

Capabilities

  • One workspace for operations, reporting, notes, and tasks
  • Local persistence for engagement context
  • Privacy-oriented workflow by default
  • Structured flow for repeatable execution

Web Dashboard and Assistant UI

Work in structured pages or switch to conversational interaction without leaving the same environment.

Capabilities

  • Web Dashboard for operations, reporting, notes, tasks, and config
  • Assistant UI with push-to-talk and typed prompts
  • In-app configuration and assistant access
  • Live runtime state indicators

Engagements, events, and coverage

Track operation lifecycle, phase activity, and coverage status with immediate timeline updates.

Capabilities

  • Engagement creation and event logging
  • Coverage and timeline review
  • Gap-to-task conversion flow
  • AI-assisted analysis summaries

Notes and report generation

Generate operational notes and reports from current context with optional AI and Vault evidence support.

Capabilities

  • Incremental notes generation per engagement
  • Report preview and markdown export
  • Optional AI sections in reports
  • Optional evidence enrichment from Vault

Local Vault search

Index and query local content to ground assistant responses and enrich operational outputs.

Capabilities

  • Path registration and indexing controls
  • Snippet-level local search
  • Source-aware results and citation support
  • Enable/disable context paths dynamically

Configurable task and notes providers

Use configurable providers for tasks and notes through integration cards and independent save flows.

Capabilities

  • Provider defaults for tasks and notes
  • Integration cards with save/test/disconnect
  • OAuth and token-based provider support
  • Read-only aggregated task review page

Run modes

Choose the execution mode that best fits your workflow and runtime environment.

Capabilities

  • App Mode: backend + voice runtime + native assistant window
  • Web Dashboard Mode: backend-first browser workflow
  • Assistant Mode: browser launcher with runtime loop
  • Predictable first-launch config behavior

Optional AI providers

Select remote or local AI providers as optional integrations based on availability and policy.

Capabilities

  • Gemini provider option
  • Ollama local model option
  • Optional fallback from local model to remote provider
  • Provider connectivity tests from config