# Aberrant

*/Startups/Aberrant*

## Startup Overview

This headless observability agent equips cloud infrastructure teams to instantly isolate rogue microservices. By ingesting raw telemetry data, the system identifies anomalous traffic patterns at the source without relying on pre-configured rules or dashboard monitoring.

Upon detecting a failing container, the agent autonomously executes network policies to quarantine the misbehaving node. This configuration-free deployment severs network access in real time, locking down the erratic component before it triggers a cascading cluster failure.

Legacy incident workflows rely on Prometheus Alertmanager, Datadog monitors, and PagerDuty routing to wake up engineers for manual log grepping. This architecture bypasses the alert cycle entirely, replacing manual threshold tuning and human intervention with immediate, autonomous quarantine.

## Startup Founding Hypothesis

**Approach**: that flags and instantly reverts unapproved infrastructure state drifts
**Competitors**:
- [HashiCorp Sentinel](/Competitors/HashiCorp_Sentinel)
- [Bridgecrew](/Competitors/Bridgecrew)
- [periodic manual audits](/Competitors/periodic_manual_audits)
**Differentiator2x2**: auto-remediating by default and strictly bound to declarative state policies

## Startup Solution Coordinate

**Solution**: [Telemetry Quarantine Agent](/Agents/Telemetry_Quarantine_Agent)

## Startup Position2x2

```mermaid
quadrantChart
    title Startup Positioning
    x-axis Manual Intervention --> Autonomous Execution
    y-axis Manual Threshold Tuning --> Configuration-Free Deployment
    Datadog Monitors: [0.25, 0.25]
    PagerDuty Incidents: [0.15, 0.35]
    Manual Log Grepping: [0.05, 0.85]
    Prometheus Alertmanager: [0.30, 0.15]
    Aberrant: [0.90, 0.90]
```

## Startup Customer Journey

```mermaid
flowchart LR; A[Hacker News Teardown] --> C[Helm Chart]; B[OpenAPI Registry] --> C; C --> D[Dry-Run Baseline]; D --> E[Active DaemonSet]; E --> F[Enterprise Fleet Orchestration]; F --> G[Engineering Blog Post];
```

## Startup Proof Points

_Illustrative — target and order-of-magnitude estimate figures, not an achieved track record (this Thing is concept-stage)._

**Pilot Goals**:
- 30-day deployment on a staging cloud environment tracking up to 1,000 resources aiming to successfully detect and revert 100% of injected manual console changes within the 60-second SLA
- 60-day integration pilot with a core DevOps team aiming to map existing Infrastructure-as-Code state graphs and demonstrate dependency-aware auto-remediation without causing any downstream resource failures
**Target Metrics**:
- target: 100% elimination of undocumented cloud provider console changes
- aim: reduction of infrastructure mean-time-to-recovery (MTTR) from hours to under two minutes
- target: under 60 seconds time-to-detection and initiated reversion for out-of-band state changes
- aim: zero orphaned assets during automated state reversions due to state-graph dependency awareness
**Target Case Studies**:
- A mid-market fintech engineering team eliminating undocumented cloud console changes and automating SOC2 compliance checks for manual configuration drift
- A large healthcare SaaS DevOps organization implementing continuous auto-remediation that respects their existing Infrastructure-as-Code state graph to reduce unauthorized drift incidents to zero without breaking dependencies
- A fast-growing consumer tech infrastructure team adopting role-based break-glass controls to allow safe emergency hotfixes via Slack while enforcing strict 60-second auto-reversions for all other manual modifications
**Testimonial Targets**:
- VP of Engineering expressing relief that manual console tampering is automatically caught and reverted post-deployment, closing the gap left by pipeline-only tools
- Lead DevOps Engineer highlighting confidence in the Slack-based break-glass commands that seamlessly allow emergency production hotfixes without fighting the auto-remediation engine
- Chief Information Security Officer emphasizing the assurance of continuous SOC2 compliance because manual configuration drift is automatically resolved and logged within seconds

## Startup Top Risks

**Risks**:
- Severity: existential · Description: The autonomous agent triggers a false positive and quarantines a critical healthy microservice, causing a severe self-inflicted outage that immediately destroys customer trust. · Mitigation Status: in-progress
- Severity: high · Description: Security and compliance teams refuse to grant the deep network execution permissions required for a third-party agent to autonomously sever container traffic. · Mitigation Status: unmitigated
- Severity: high · Description: The agent fails to reliably execute network policies across highly fragmented CNI plugins and service meshes like Istio, Cilium, and Calico, severely limiting deployability. · Mitigation Status: in-progress
- Severity: moderate · Description: Ingesting and processing raw telemetry data for threshold-free anomaly detection consumes excessive CPU and memory overhead, making the DaemonSet too expensive to run on customer nodes. · Mitigation Status: unmitigated

## Startup Competitors

- [Datadog Monitors](/Competitors/Datadog_Monitors) — Incumbent
- [PagerDuty Incidents](/Competitors/PagerDuty_Incidents) — Incident Management
- [Manual Log Grepping](/Competitors/Manual_Log_Grepping) — Status Quo
- [Prometheus Alertmanager](/Competitors/Prometheus_Alertmanager) — Open Source
- [Dynatrace Davis](/Competitors/Dynatrace_Davis) — Enterprise APM
- [Cilium Network Policies](/Competitors/Cilium_Network_Policies) — Cloud Native

## Startup Business Definition

**Name**: Isolate Rogue Microservices for Cloud Infrastructure Teamss
**Layers**:
- **Thesis**: Agent
- **Template**: per-outcome-metered
- **Buyer Chain**: B2B → Site Reliability Engineer → Autonomous Quarantine Agent
**Vision**:
- **Vision**: Cloud Infrastructure Teams no longer carry the cost of isolate rogue microservices; the work runs reliably in the background, and the team that used to do it is free for higher-leverage work in cloud infrastructure teams.
- **Mission**: act as the digital employee that handles isolate rogue microservices for Cloud Infrastructure Teams.
**Industry**: Cloud Infrastructure Teams
**Coord Href**: /Startups/Aberrant
**Processes**:
- Name: Customer Intake · Owner: startup-cs-onboarding · Category: core · Description: Capture a new customer's signup or sales hand-off and route them into onboarding. · Added By Layer: operate-baseline
- Name: Agent Work Loop · Owner: delivery-primary-agent · Category: core · Description: The Primary Agent runs its day-to-day work loop; the Supervisor reviews exception cases. · Added By Layer: thesis
- Name: B2B Sales Cycle · Owner: buyer-chain-b2b-sales-rep · Category: core · Description: From qualified lead to signed contract; the sales rep owns, account management takes over post-close. · Added By Layer: buyer-chain
- Name: Outcome Verification & Billing · Owner: template-per-outcome-activation · Category: core · Description: Per-outcome pricing means each delivered outcome is a billing event; verify, meter, charge. · Added By Layer: template
**Workflows**:
- Name: On New Customer Signup · Description: Event-driven: a new customer signs up → kick off onboarding + record the founding-OKR KR event. · Added By Layer: operate-baseline
- Name: Daily Agent Run · Description: Scheduled daily run of the Primary Agent's standing workload. · Added By Layer: thesis
**Departments**:
- Id: delivery-agent · Code: DEL · Name: Delivery (Agent) · Description: Delivery primitives for an Agent Thesis (ADR 0034 §3) — the Agent is the buyer-facing Worker, supervised by an agent supervisor that tunes it against measured outcomes. · Added By Layer: thesis
- Id: startup-operate · Code: OPS-S · Name: Operate (Startup-specific shared services) · Description: Per-Startup operate functions — Customer Success, Marketing, Revenue/Sales, Customer Ops. The Studio default carries portfolio-wide bookkeeping/AP/AR/tax/legal-prep (#239); this overlay adds the Startup-specific operate Positions that have to exist in every operating company. The four-layer specialization (Thesis/Template/spine/Buyer-Chain) then shapes these seats to the Startup's actual shape — additions/overrides happen in those layers, not here. · Added By Layer: operate-baseline
**Description**: An operating company whose buyer-facing product is an Agent that handles isolate rogue microservices for cloud infrastructure teamss.
**Founding Okr**:
- **Period**: First 90 days
- **Objective**: Prove the wedge — first cloud infrastructure teams pay for isolate rogue microservices solved.
- **Description**: The founding OKR — every key result is a concept-stage TARGET (no operating history claimed), aimed at validating the Founding Hypothesis against the assigned wedge.
**Generated By**:
- **Generator**: C1
- **Generator Version**: 1.0.0
**Inherits From**:
- **Base**: STUDIO_DEFAULT_ORG
- **Version**: 1.0.0
- **Schema Version**: 2.1.4

## Startup Token Bindings

**Vocab Fingerprint**: 731b5fab4fbaf49a

## Neighborhood

### Candidate solutions

- [B2B Trade Credit Management](/Problems/B2B_Trade_Credit_Management) — candidate solution for · Problems

### Competitors

- [PagerDuty Incidents](/Competitors/PagerDuty_Incidents) — competes with · Competitors
- [Dynatrace Davis](/Competitors/Dynatrace_Davis) — competes with · Competitors
- [Prometheus Alertmanager](/Competitors/Prometheus_Alertmanager) — competes with · Competitors
- [Manual Log Grepping](/Competitors/Manual_Log_Grepping) — competes with · Competitors
- [Datadog Monitors](/Competitors/Datadog_Monitors) — competes with · Competitors
- [Cilium Network Policies](/Competitors/Cilium_Network_Policies) — competes with · Competitors
- [periodic manual audits](/Competitors/periodic_manual_audits) — competes with · Competitors
- [Bridgecrew](/Competitors/Bridgecrew) — competes with · Competitors
- [HashiCorp Sentinel](/Competitors/HashiCorp_Sentinel) — competes with · Competitors
- [Traditional Apparel Factoring](/Competitors/Traditional_Apparel_Factoring) — competes with · Competitors
- [Dun & Bradstreet](/Competitors/Dun_&_Bradstreet) — competes with · Competitors
- [Manual PDF Credit Applications](/Competitors/Manual_PDF_Credit_Applications) — competes with · Competitors
- [Upfront Cash Demands](/Competitors/Upfront_Cash_Demands) — competes with · Competitors
- [Manual PDF Applications](/Competitors/Manual_PDF_Applications) — competes with · Competitors
- [Resolve B2B](/Competitors/Resolve_B2B) — competes with · Competitors
- [Upfront Card Deposits](/Competitors/Upfront_Card_Deposits) — competes with · Competitors
- [Legacy Apparel Factoring](/Competitors/Legacy_Apparel_Factoring) — competes with · Competitors
- [Dun And Bradstreet](/Competitors/Dun_And_Bradstreet) — competes with · Competitors
- [NuORDER By Lightspeed](/Competitors/NuORDER_By_Lightspeed) — competes with · Competitors
- [Manual Finance Inbox](/Competitors/Manual_Finance_Inbox) — competes with · Competitors
- [NuORDER](/Competitors/NuORDER) — competes with · Competitors

### Who it serves

- [industrial-organizational psychologists](/CompanyTypes/industrial-organizational_psychologists) — serves · CompanyTypes
- [Cloud Infrastructure Teams](/CompanyTypes/Cloud_Infrastructure_Teams) — serves · CompanyTypes
- [Digital-First D2C Apparel Brand](/CompanyTypes/Digital-First_D2C_Apparel_Brand) — serves · CompanyTypes

### Embodies

- [Agent](/Theses/Agent) — embodies · Theses

### What it offers

- [Telemetry Quarantine Agent](/Agents/Telemetry_Quarantine_Agent) — offers · Agents

### What it addresses

- [Isolate Rogue Microservices](/Problems/Isolate_Rogue_Microservices) — addresses · Problems

### Composed of

- [Autonomous Credit Analyst](/Agents/Autonomous_Credit_Analyst) — composes · Agents
- [Showroom Credit Service](/Services/Showroom_Credit_Service) — composes · Services
- [Financial Document Agent](/Agents/Financial_Document_Agent) — composes · Agents
- [Order Intercept API](/Software/Order_Intercept_API) — composes · Software
- [Boutique Identity API](/Software/Boutique_Identity_API) — composes · Software
- [Open Banking Gateway](/Software/Open_Banking_Gateway) — composes · Software

### Entrant in opportunity

- [AI Trade Credit for Apparel Brands](/Opportunities/AI_Trade_Credit_for_Apparel_Brands) — is entrant in · Opportunities
- [Real-Time Credit for Apparel Showrooms](/Opportunities/Real-Time_Credit_for_Apparel_Showrooms) — is entrant in · Opportunities

### Similar Startups

- [Faultascade](/Startups/Faultascade) — similar · Startups
- [Astralagent](/Startups/Astralagent) — similar · Startups
- [Abort](/Startups/Abort) — similar · Startups
- [Ablaze](/Startups/Ablaze) — similar · Startups
- [Almepair](/Startups/Almepair) — similar · Startups
- [Wholoblem](/Startups/Wholoblem) — similar · Startups
- [Problequency](/Startups/Problequency) — similar · Startups
- [Aberrational](/Startups/Aberrational) — similar · Startups
- [Abrupt](/Startups/Abrupt) — similar · Startups
- [Outagyard](/Startups/Outagyard) — similar · Startups
- [Triagehaven](/Startups/Triagehaven) — similar · Startups
- [Servant](/CompanyTypes/Mid-Market_Managed_IT_&_Hosting_Services/Problems/SLA_Breach_Client_Churn/Startups/Servant) — similar · Startups
- [Autop](/Startups/Autop) — similar · Startups
- [Accit](/Startups/Accit) — similar · Startups
- [Degradationloft](/Startups/Degradationloft) — similar · Startups
- [Autoreman](/Startups/Autoreman) — similar · Startups
- [Outagetile](/Startups/Outagetile) — similar · Startups
- [Baynerve](/Startups/Baynerve) — similar · Startups
- [Drivenoutages](/Startups/Drivenoutages) — similar · Startups
- [Rigape](/Startups/Rigape) — similar · Startups
