Below is an snapshot of the Thalassa Cloud roadmap, grouped by timeline with the current development status.
| Status | Description |
|---|---|
| completed | Development completed and shipped |
| beta access | Available for use, may lack certain functionalities or SLA |
| in progress | Actively being worked on |
| design | In design or PoC phase |
| planned | Planned for implementation |
| gathering input | We’re gathering feedback and shaping the scope |
| Category | Feature | Description | Status |
|---|---|---|---|
| IaaS | Core Infrastructure | VPCs, NAT Gateways, Load Balancers, VMs, and Block Storage | completed |
| IaaS | HA NAT gateways | Highly Available NAT gateway across multi-zones support | completed |
| IaC | Terraform Provider | Terraform provider for managing Thalassa Cloud resources | completed |
| CLI | tcloud CLI | Command-line tool for interacting with Thalassa Cloud | completed |
| Kubernetes | Managed Kubernetes | High-quality Kubernetes service built for production | completed |
| FinOps | Cost Explorer | Resource usage tracking and initial cost breakdown | completed |
| Networking | VPC Firewall | Subnet- and VPC-level firewall configuration | completed |
| Kubernetes | kubernetes v1.33 | Support Kubernetes v1.33 | completed |
| Networking | Internal DNS resolvers | New HA Internal DNS resolvers for upstream resolution | completed |
| Security | Audit Logging | Platform-wide audit logging | completed |
| Kubernetes | RBAC with IAM | Integrated RBAC tied to IAM users and roles | completed |
| Billing | Invoice Generation | Exportable monthly billing statements | completed |
| Billing | Payment Processor Integrations | Stripe, Mollie and others | completed |
| Kubernetes | Cloud Controller Manager | Integrated cloud controller manager for Kubernetes | completed |
| Kubernetes | CSI Controller | Container Storage Interface controller for Kubernetes | completed |
| IAM | System Service Accounts | Support for system service accounts | completed |
| Kubernetes | Kubernetes Dashboard | Web-based Kubernetes user interface | completed |
| Kubernetes | Kubernetes Cluster RBAC | Role-Based Access Control for Kubernetes clusters | completed |
| IaaS | Organisation Resource Quotas | Resource quotas at the organization level | completed |
| Networking | Loadbalancers: UDP Support | Support for UDP traffic in load balancers | completed |
| Operations | Public Cloud | Enabling open access to Thalassa Managed Public Cloud, allowing full self-service sign-up. | completed |
| Kubernetes | Automatically Scheduled Cluster Upgrades | Scheduled upgrades for Kubernetes clusters based on maintenance window | completed |
| IaaS | Snapshots & Backups | Providing volume snapshots and back-up services. | completed |
| Security | OIDC Based API Credentials | Implementing OIDC (OpenID Connect) based API credentials as a replacement for Personal Access Tokens. | completed |
| Networking | Security Groups | Full support for assignable security groups for cloud services (IaaS, Kubernetes, etc). | completed |
These items are scheduled to be completed within the near future.
| Category | Feature | Description | Status |
|---|---|---|---|
| Databases | Managed PostgreSQL | Introducing our first managed database service with PostgreSQL. | beta access |
| IaaS | Object Storage | S3-compatible storage service for unstructured data. | beta access |
| IAM | System Accounts | Support for service accounts and automation roles | beta access |
| Kubernetes | Auto Scaling Capabilities | Kubernetes with node pool autoscaling and update strategies. | beta access |
| Kubernetes | Container Registry | Provide fully integrated Container Registry for storing OCI artifacts | beta access |
| Networking | VPC Peering | Internal connectivity between VPCs | beta access |
| Networking | IPv6 & Dual Stack | Dual-stack (IPv4/IPv6) and IPv6 only networking support for all services. | in progress |
| Compliance | ISO27001 | Achieve ISO 27001 certification | in progress |
| Observability | Managed Prometheus | Long-term metric storage | in progress |
| Observability | Logging Access | Centralized access to platform logs | in progress |
| PaaS | Managed Secrets | Secure secret store for apps | in progress |
| Security | Customer Managed Encryption Keys | BYOK encryption for sensitive data | in progress |
| Identity | Workload Idenities | Every workload (VMI, Container, etc) has an identity with optional roles and permissions | design |
| Platform | Quick Launch Templates | Creating one-click deployment templates for common workloads. | design |
| Security | Automated Ingress Blocklists | Developing IP blocklists via threat intelligence feeds to automatically protect against malicious traffic. | design |
| IaaS | Custom Machine Images | Custom image support for organization-level control | design |
| Networking | Custom DNS Zones | Manage public and private DNS zones | design |
| AI/GPU | GPU Instance Types | Support AI workloads | planned |
| Networking | VPC Bastion | Bastion Service to allow SSH access to Virtual Machines within an VPC | planned |
| Networking | Reserved IP Addresses | Reserve and assign specific IP addresses to network services such as LBs and NAT Gateways | planned |
| Projects | Allow logical seperation within an organisation using projects | Resource isolation within organizations for different teams, projects, sub-organisations | planned |
| Security | Web Application Firewall (WAF) | Layer 7 protection for apps | planned |
| Networking | L7 Load Balancing | HTTPS, TLS, and gRPC support | planned |
| Networking | Site-to-Site VPN Endpoints | Managed IPSec connectivity | planned |
| DevOps | Managed Gitlab CI Runner | Fully Managed Gitlab CI runners to integrate with Gitlab.com or your selfhosted Gitlab | planned |
| DevOps | Managed GitHub Action Runner | Fully Managed Github Action runners to integrate with Github | planned |
| Category | Feature | Description | Status |
|---|---|---|---|
| PaaS | Serverless Capabilities | Deploy apps without managing infra | planned |
| Compliance | SOC2 | Obtain SOC2 | planned |
| PaaS | Initial Rollout | GitOps-ready deployment platform | planned |
| FinOps | Cost Explorer 2.0 | Labels, filters, and report scheduling | planned |
| Compliance | Audit & Compliance Center | Visual dashboard for audit data | planned |
| FinOps | Budget Limits & Alerts | Org-level cost controls and alerts | planned |
| Services | Managed Kafka | Potential managed Kafka based on demand | gathering input |
| Services | Managed RabbitMQ / NATS | Messaging services as managed offerings | gathering input |
| Databases | Managed Valkey | Managed Valkey (Redis fork) | gathering input |
| Policy | Centralized Policy Engine (OPA) | Org-wide policy enforcement | gathering input |
| Policy | Change Approval Workflows | Require approval for sensitive operations | gathering input |
| Chaos Testing | Chaos Testing APIs | Provide APIs and feature sets around chaos testing your Cloud Services natively from Thalassa Cloud | gathering input |
| Ecosystem | Add-On Marketplace | Deploy certified third-party apps and integrations | gathering input |
| Category | Feature | Description | Status |
|---|---|---|---|
| PaaS | Multi-Cluster Service Mesh | Unified networking across clusters and regions | planned |
Roadmap Priority and timeline
Time-line and roadmap items are an indication. Based on our internal and our customers’ requirements, items on our roadmap may have their timeline or priority updated.