Product

One platform, in one picture.

Sentinel is the layer where your data is connected, understood, watched and acted on, and where a person stays in charge of every consequential step. Most people use the App. The people who own the data build in the Workbench. A business gets a module when a job deserves its own screen.

ConnectTo data where it lives. Read in place, kept current.
ModelAs the things you actually run, with a typed hierarchy and a signal dictionary.
AskAnything, in plain language, and get an answer computed from the data, with the query shown.
WatchWith crews of AI agents that meet on a schedule and only speak when it matters.
CollaborateIn threads where people and agents work the same problem, and the reasoning stays.
ActEmail, tickets, reports, alerts, models. A record and an undo for every action.

The App: one screen, no learning curve.

There is one address, one sign-in with your company account, and one box to type in. If you can write a message, you can use Sentinel. Business people deliver value on their first day, with no data team in the loop.

The left rail is the whole map. New chat asks Mentor anything. Threads are the conversations you share with colleagues and agents. Artifacts are the documents and live dashboards built for you. Workflows are your scheduled reports. Missions are the standing crews and what they need from you.

SentinelQuality workspace
New chat
Library
Threads
Artifacts
Workflows
Missions 3
Modules
Quality Cockpit
Sessions
Stability Watch — meeting
Batch Release Watch — me…
Open deviations older than…

3 council decisions need a ratify, Ana

Quick scan and ratify when you're ready.

Needs you
Scheduled meeting — Stability WatchRatify
Scheduled meeting — Batch Release WatchRatify
Scheduled meeting — Environmental MonitoringRatify

Mentor runs the query and shows the work.

Mentor does not recall an answer or summarise a document. It writes and runs queries against your governed data, over millions of rows, and shows the query, the tools and the source. If you doubt a figure, ask for the underlying rows.

Ask for something the data does not support and Mentor says so rather than producing a number.

MentorProcurement workspace

Top ten vendors by purchase-order spend, last twelve months.

SELECT vendor, SUM(po_value) AS po_spend FROM purchase_orders WHERE po_date >= DATE '2025-09-10' AND po_date < DATE '2026-09-10' GROUP BY vendor ORDER BY po_spend DESC LIMIT 10;
RankVendorPO spend
1Northline Industrial Supply$1,845,619,827
2Harbor Valve & Fitting$985,000,000
3Meridian Chemical Co.$566,511,713
4Castell Logistics$554,743,395
5Orsa Engineering$529,966,000

Computed from purchase orders in place. Show the rows

Crews that watch, argue, and speak only on consensus.

A mission is a crew of AI specialists that meets on a schedule, reads its charter, works the data, debates, and votes. They are paid to be critics. Nothing is sent unless the crew agrees a person must act.

Silence is a valid outcome. Most days, that is what you get.

Stability WatchDaily 06:00 · consensus required
SS
Stability Scientist · position
All results posted since last meeting sit inside specification. Study 212-B trends 0.4% below its own history at the 9-month point; still well within limit.
AC
Analytical Chemist · challenge
The 212-B dip coincides with a method change on the HPLC. Method variability, not product. I would not escalate.
QA
QA Skeptic · challenge
Agree, but the next 212-B pull is due in nine days. If it drifts again after the method is stable, that is a different conversation.
M
Mentor · chair
Motion: no action required today. Re-examine 212-B at the next pull. Vote.
No action required. 4 of 4.Nothing sent

Agents propose. People decide.

Nothing consequential happens because an agent said so. It waits, with its reasoning attached, for a person to ratify. Every decision links to the meeting that produced it, post by post. Every action is simulated first, then recorded with its cost, its outcome and an undo.

Needs you1 to ratify
Batch Release WatchScheduled meeting, today

Hold the next cycle on the Line 3 lyophiliser until the port-2 transducer is calibrated.

Port 2 reads above port 1 at steady state, and the offset has grown on each of the last five cycles. Product temperature stayed below the collapse threshold throughout; the batch is releasable. The risk is the next one.

Undo

Threads: people and agents in one conversation.

@mention a colleague or an agent in the same sentence. The agent answers with the data, the colleague answers with judgement, and the thread keeps both. When it is resolved, the conclusion is captured into the workspace's knowledge and Mentor can cite it later.

The reasoning behind a decision no longer lives in someone's head or in a chat app nobody can search. It lives next to the data it was about.

Line 3 lyophiliser — pressure excursion during cycle 4418Investigation · 14 posts
TL;DR — Chamber pressure overshot the primary-drying setpoint for 11 minutes. Product temperature stayed below the collapse threshold throughout, so the batch is releasable. The transducer on port 2 has drifted since its last calibration and is the likely cause.
  • Calibration of the port-2 transducer is scheduled for Thursday; hold the next cycle until it is done.
  • QA to decide whether cycles 4414–4417 need a retrospective review.
PE
Process Engineer · agent · mentioned you
@Ana Ferreira — I compared cycle 4418 against the previous twelve on Line 3. The overshoot is real, and it is the third in five cycles. Chart attached: chamber pressure on ports 1 and 2, with the product thermocouples.
AF
Ana Ferreira · QA lead
Agreed on the hold. I'll take the retrospective question to the release meeting.

Email is a client.

Sentinel works from email like a colleague. Forward a question, a supplier email or an attachment to its mailbox; a thread opens, the analysis runs, and the reply lands back in your inbox. Reply to the reply and the thread continues. Anyone on the CC line joins.

Inbound
  • Only known users are ever acted on. An email is that person acting, under their own permissions.
  • A new question opens a thread; a reply lands in the thread it came from.
  • A dry-run mode lets you watch it for a day before it acts.
Outbound
  • Mission briefings, weekly digests, scheduled reports with PDF and Excel attached, and approval requests all arrive by email, charts embedded, with links back to the thread.
  • A person who never opens the App still gets full value: ask by email, receive by email, approve by email.

What arrives without asking.

The reports your team assembles by hand every week are a workflow. Build it once, in the canvas or by asking Mentor to build it, and it arrives every Monday with the numbers recomputed from the data. An AI reviewer checks a generated report before it is allowed to send; a flawed one is blocked, not delivered.

WorkflowsQuality workspace
6total
6active
9runs today
98%success rate
Weekly stability digest

Every Monday 06:00: results posted in the last 7 days against trend, pulls due in 30 days, chamber excursions. PDF and Excel to the QA leads.

Last run today · success
Batch release pack — Line 3

On batch close: assemble the release pack, review with Mentor, and email QA for sign-off.

Last run today · success
Open deviations by site

Daily 07:00: open deviations older than 30 days grouped by site and owner, posted to the QA thread.

Last run today · success

The Workbench.

Everything the App shows was built here, by the people who own the data, and everything built here is immediately available to Mentor, to missions and to the App.

Atlas: a living map of every source, element, model, workflow and agent, and how they connect.
Atlas. A living map of every source, element, model, workflow and agent in the deployment, and how they connect. Pick a node to see its lineage and who may use it.
AtlasA living map of every source, element, model, workflow and agent, and how they connect. Walk upstream to see what feeds a number, downstream to see what breaks if it changes.
IngestionSources, connectors, upload, the tag registry, the element tree and the signal dictionary.
TransformationStudio notebooks, models, the registry, experiments, pipelines and visualisation.
ActionAlerts, notifications, events, classifiers, artifacts and workflows.
OrchestrationAgents, tools, missions, threads, the live feed and agent operations.
MarketplacePublish a workflow, agent, model or live dashboard once; install it anywhere as a fresh copy.
Workspaces · Learn · SystemWho sees what; a step-by-step guide to every surface; the admin console.
The agent registry: each agent with a charter, a tier, an autonomy level and a tool palette.
One line of the list, as it exists. The agent registry: each agent with a charter, a tier, an autonomy level and a tool palette.

One typed model of what you run.

Raw data arrives as columns and tags with cryptic names. The element layer turns them into the nouns your business uses — a site, a line, a compressor, a purchase order — and hangs every measurement, event and document on the thing it belongs to. Mentor, missions and modules reason about elements, not columns.

Modules: when a job deserves its own screen.

A module is a set of purpose-built pages for one job, running on the same platform: the same data, the same permissions, the same Mentor button on every screen. Ask a question on any tile and the answer comes from the same governed query the tile used.

Built per deployment, in code or with Mentor, and installed per workspace. Anything reusable — a dashboard, a workflow, an agent, a model — is described in plain language, checked against the live catalog before it renders, published once through the Marketplace, and installed elsewhere as a fresh copy.

A plant's live state: risk by area, open incidents, permits, alerts, crews on shift.
A plant, live. Risk by area, permits, incidents, and what the crews on shift are seeing.
A review brief built by asking: an executive readout, the evidence counted, and one exception flagged.
A brief, built by asking. An artifact Mentor authored from two invoices, a contract and a workbook: the readout, the evidence, and the one exception it would not call a breach.

Talk, code, or your own IDE.

The business user and the data scientist use the same platform and land in the same place. A model built in a notebook is what Mentor answers with; a workflow built from chat is what the engineer sees on the canvas.

Studio: a Python notebook with a running kernel and Mentor beside the code.
Studio. A notebook with a kernel, a project per workspace, Mentor beside the code, one-click deploy to a pipeline.

Talk

Ask Mentor to build it: a workflow, an alert rule, a live dashboard, a mission, a model. It authors, validates and deploys, and shows you what it made.

Code

Open Studio: Python notebooks in the project's own environment, import sentinel to reach every source directly, scheduled runs, a model registry and pipelines to deploy into.

Your IDE

Connect Visual Studio Code or the editor of your choice and work on the same projects, the same data and the same deploy path, from where you already work.

Keep your stack.

Sentinel does not replace your systems of record, your warehouse or your BI. It reads them in place and becomes the layer where people and agents act on what they show. Your system of record stays the system of record.

Data in, read in place

ERPs, CMMS and EAM, MES and LIMS. Historians, SCADA and live signals. Warehouses, lakehouses and data platforms. BOMs, drawings, documents and spreadsheets. Email and attachments. Anything with an API.

Actions out, with a record and an undo

Email, chat and meetings. Tickets and work orders. Document systems. Reports as PDF and Excel. Webhooks, storage and transfers. Your own API.

Agents, both ways

Your own agents connect over MCP as the signed-in user, with that person's permissions. Sentinel's agents reach out through every tool above: simulated first, ledgered, gated by the autonomy you set.

Examples, not a list. Connectors and tools are added per deployment.

Your copilot asks. Sentinel is what it asks.

If your people already live in Claude, Copilot or ChatGPT, they can keep it. Add Sentinel as a connector and their assistant gains every Sentinel tool — discover sources, query, run recipes, build a dashboard — as that user, with that user's real workspace permissions.

How it works
  • The connector signs the user in with your identity provider, never a shared key.
  • Every call is logged as that person.
  • There are no destructive or admin operations on the connector.
  • The same door is the one Copilot Studio agents use, so a Teams agent can be built on it.
And the reverse
  • Sentinel's own Mentor runs on whichever model you choose, per surface.
  • Because the grounding, the tools and the element layer do the heavy lifting, the platform is not hostage to any one provider.
  • A smaller model performs at a level it never could alone.

On-premises or cloud.

One product, one codebase. It runs inside your own network, in a private cloud, or hosted by Wonder DataLabs. Nothing about the features depends on where it sits, only on where your data is allowed to be.

Behind your firewall
  • Runs on your own servers or private cloud
  • Signs in with your identity provider
  • Reads data that never leaves the network
  • Models private, or from a provider you choose
  • Updates delivered as releases
Hosted for you, or in your cloud account
  • Live in days, not quarters
  • Same software, same features
  • Your own tenant, nothing shared
  • Connects to cloud warehouses in place
  • Scales with the workload

The audit log, the ledger and every thread live with the deployment.

Safe enough to let it act.

Autonomy is earned in layers, and every layer is visible. Each mission has a ceiling; anything past it waits for a person. Every action an agent takes is simulated first, then recorded with its cost, its outcome and an undo where the tool allows one.

Getting started.

Everything on this page runs on the same platform. The practical next step is a conversation about which data you want answerable first.

Connect what you haveA database, a warehouse, a historian, or just files. Sentinel reads in place and builds the element tree with you. Your data is answerable in plain language the same day.
Sign in with your company accountYour people already have Microsoft or Google identities. No new passwords, no training course, real permissions from minute one.
Ask, then let it watchType the question your team has meant to ask for a year. Then ask Mentor to turn it into a weekly report, and describe a mission for the thing you worry about.
Give a job its own screenWhen one job earns a cockpit, build a module and install it on the App's rail.