01
Cloud incident: GCP logs stop reaching Sentinel
Changefy traces a broken log pipeline back to an IAM rotation, drafts the fix, and confirms events are flowing again.
sink=log-forwarder · status=VERIFIED · lag=42s
CHANGEFY · GOVERNED AI OPERATIONS
Tell Changefy what you need. It investigates your environment, builds a plan, waits for a human to authorize it, executes the work, and proves the result — with a full record of every step.

Built to operate across your infrastructure
FROM INTENT TO VERIFIED CHANGE
Traditional AI says
“I’ve restarted the log forwarder — it should be working now.”
Changefy did
Re-granted the IAM role, redeployed the sink, restarted the forwarder, and confirmed a live event reached Sentinel 42 seconds later. Recorded in evidence req_9f23.
01 · INVESTIGATE
Changefy pulls real context from the systems involved — not just the request text — before it forms an opinion about what’s wrong.


02 · DIAGNOSE
For the payments p99 regression, Changefy correlated deploy 2c1f4a with the latency spike and identified a connection-pool sizing regression as the root cause, at 92% confidence — stated as a number, not a guess dressed up as certainty.
03 · PLAN
Changefy doesn’t just propose actions — it scores them. Risk level, blast radius, rollback path, and the exact checks that will prove success, all before a human ever sees an approval request.
If reality drifts from the plan mid-execution, Changefy stops and asks — it doesn’t improvise past what was authorized.

04 · REVIEW

05 · EXECUTE
Execution runs the authorized plan one step at a time against real systems, streaming a live log — with an abort control always visible.

06 · VERIFY

07 · AUDIT

USE CASES
01
Changefy traces a broken log pipeline back to an IAM rotation, drafts the fix, and confirms events are flowing again.
sink=log-forwarder · status=VERIFIED · lag=42s
02
Investigates CPU pressure, proposes a resize window, executes with a rollback snapshot, and verifies headroom afterward.
vm=api-worker-03 · size=D4s→D8s · risk=LOW
03
Finds a rule open to 0.0.0.0/0, plans a scoped replacement, and verifies no dependent service loses connectivity.
rule=allow-any-8443 · blast_radius=2 services
04
Picks up a merged PR, plans the deployment, waits for approval, executes the release, and verifies health checks pass.
pr=#4821 · env=production · rollout=canary
05
Diagnoses disk growth trend, plans a capacity expansion with a maintenance window, and verifies free space afterward.
lun=vol-9c2 · free=4% → 38%
06
Correlates a deploy with a latency regression, proposes a connection-pool fix, and verifies p99 returns to baseline.
deploy=2c1f4a · p99=840ms → 210ms
07
Investigates a suspicious sign-in alert, plans a scoped containment action, and verifies the session is terminated.
alert=SEN-8842 · action=revoke session
08
Patches dev a week ahead of production, drains sessions in capacity-preserving batches, and verifies every host healthy before closing the window — planned maintenance, not firefighting.
hosts=52 · batches=2 · min_capacity=50%
CONNECTIONS
ARCHITECTURE
WHY CHANGEFY
| Capability | Traditional Copilot | AI Agent | Changefy |
|---|---|---|---|
| Understands the request | Yes | Yes | Yes |
| Investigates real infrastructure | No | Partial | Yes |
| States a diagnosis with confidence | No | Sometimes | Yes |
| Produces a risk-scored plan | No | Rarely | Yes |
| Requires human authorization | N/A | Optional | Always |
| Executes against real systems | No | Sometimes | Yes |
| Stops on deviation mid-execution | No | No | Yes |
| Verifies the outcome independently | No | No | Yes |
| Produces an exportable evidence trail | No | No | Yes |
INSIDE CHANGEFY

CHANGEFY
Investigate. Plan. Authorize. Execute. Verify.