Deterministic step
Computes. Can produce numbers. Golden-tested. Same input, same output.
table → tableKogei is an agent orchestrator that runs on hardware you own. Deterministic steps produce every number. Agents interpret them — never the other way around.
On a schedule, it reads from your systems, computes the result, has a local model interpret it, and delivers the report inside your network.
v1 is read-only. No write actions, no desktop RPA.
Computes. Can produce numbers. Golden-tested. Same input, same output.
table → tableDecides its own steps, uses tools. Cannot produce numbers. Budgeted. Traced.
budget: 12 steps · 90 sA third type sits between them: a workflow call — a published, signed pipeline. An agent can hold one in its toolbox and decide when to run it; the pipeline still runs deterministically. Your security team approves the list once; agents compose freely after that.
This is the one mechanism that keeps “no number comes from the model” true when anyone can compose anything.
| Invoices matched | 1,284,097 |
| Discrepancies | 11 |
| Value at risk | ₺ 48,900 |
“Eleven discrepancies remain, mostly in the Ankara ledger, worth about ₺52,000 — all raised after the cut-off.”
pass 11 is in the deterministic output.
return ₺52,000 is not. The sentence goes back.
If it comes back wrong again, the report ships without that comment.
Running an agent loop on every job is slow, expensive and unnecessary. Good operations teams do not work that way, and neither does Kogei.
The dashed branch is not the normal path. It is labelled on exception on the canvas, and it is the only way an agent enters a run.
The model runs in the same box as the engine. No inference leaves the appliance.
Signed, offline updates. Backup and restore included.
PostgreSQL, MySQL, SFTP, HTTP, and a generic ODBC escape hatch.
Your data stays in your network unless you connect an agent to the internet. When you do, that agent is marked, and every request it makes — target, full text, timestamp — is written to the audit log. One switch turns outbound access off for the whole box.
Configuration you change tomorrow does not rewrite what happened today. The plan a run executed is stored with the run.
Every read, every model call, every outbound request — target, full text, timestamp — appended and chained. Tampering breaks the chain.
Install, upgrade, roll back. The moment you edit a template’s graph the agent is forked, and it carries that mark wherever it appears.
The report as delivered, the run’s trace, the frozen configuration it ran under, and source evidence — query text, timestamp, row count, hash, data profile. Packaging it into a signed auditor bundle is not built yet.
Not yet, and in some cases not ever — and the list now says which is which. You will find both halves in the contract too.
On the roadmap, and absent today. We are not attaching a date to any of it: a line on a roadmap is not a working feature, and this page only claims what already runs.
These are not late; they are declined. Kogei reads, computes and reports — it does not write back to the systems it reads from, and that one restraint is what the audit log, the egress record and every claim on the security page rest on. Desktop RPA would move the boundary onto a screen where no log can see it. Multi-tenancy would put your evidence on a box you don’t own alone.
A local model’s agentic loop is measurably more fragile than a frontier model’s — tool selection, format adherence, knowing when to stop. That is why every agent step is budgeted and traced, not something we discovered afterwards.
Made to be checked.
Thirty minutes. We run a real report end to end on our box, and you follow one number from the report back to the row it came from — through the frozen plan, the audit log and the seal.
No slides.