Vianordis
--:--:-- UTCVianordis / ED. 02 / 2026
§ 07 — App support

Kinetis

Sovereign project and task management for teams that need delivery clarity.

Kinetis gives teams a European-hosted task and project platform for projects, workflows, boards, task lists, sprints, backlogs, analytics, collaboration records, and AI-aware delivery intelligence without sending sensitive work data into generic third-party SaaS tools.

01Problem

Work gets harder to trust when planning, execution, and evidence are fragmented.

Teams often plan in one tool, discuss in another, track status in spreadsheets, and report delivery from memory. The result is unclear ownership, missed deadlines, stale backlogs, duplicated tasks, weak audit evidence, and project data stored in platforms that may not fit European sovereignty requirements.

  • Tasks are created without consistent ownership, status, priority, or acceptance context
  • Backlog, sprint, board, and reporting views drift apart across separate tools
  • Private project work is hard to separate from internal or public team visibility
  • Dependencies, subtasks, epics, modules, comments, attachments, and activity history are not governed together
  • AI assistance creates compliance questions when prompts, responses, cost, and acceptance are not tracked
  • Project data may sit in US-centric SaaS platforms with limited self-hosting or export control
02Solution

Kinetis turns team delivery into a tenant-scoped operating system.

Kinetis combines project spaces, workflows, statuses, project membership, task hierarchies, sprint planning, Kanban boards, list views, backlog management, analytics, comments, attachments, time records, saved views, webhooks, and AI interaction tracking into one sovereign task platform.

  • Create project workspaces with codes, visibility, leads, members, workflow settings, and estimation mode.
  • Track tasks as tasks, bugs, features, epics, stories, or subtasks with priority, assignee, sprint, module, labels, estimates, and due dates.
  • Plan sprints with goals, dates, status, task counts, point totals, completed work, and burndown data.
  • Keep work tenant-scoped with PostgreSQL row-level security, visibility-based project access, and role-aware write controls.
03Benefits

Delivery outcomes Kinetis is designed to improve

Kinetis focuses on making work visible, assignable, measurable, and auditable while preserving control over sensitive project data.

Clarify ownership

Every task can carry an assignee, reporter, status, priority, project, sprint, module, parent, epic, estimates, and due dates.

Unify planning views

Use boards, lists, backlog pages, sprint pages, dashboards, and analytics over the same governed task data model.

Support agile and operational work

Model Kanban flow, Scrum sprints, epics, stories, bugs, features, subtasks, modules, and ongoing operational requests.

Protect sensitive project data

Use tenant isolation, project visibility rules, membership roles, and database-level row-level security for scoped access.

Improve reporting evidence

Keep task counts, sprint metrics, burndown data, activity logs, comments, attachments, and AI interaction records available for review.

Avoid generic SaaS lock-in

Run on Kubernetes-backed European infrastructure or scope dedicated deployment patterns for organizations that need tighter control.

04How it works

How Kinetis works

  1. 01

    Create the project workspace

    Define a project code, name, visibility, lead, estimation mode, members, workflow, statuses, and default operating rules for the team.

  2. 02

    Plan and assign the work

    Create tasks, bugs, features, epics, stories, and subtasks; add priority, owner, dates, estimates, labels, modules, and sprint context.

  3. 03

    Track delivery and evidence

    Move work through board columns, review list and backlog views, monitor sprint progress, capture comments and activity history, and use analytics to guide planning.

05Features

Core Kinetis capabilities

Project workspaces

Create projects with code, name, description, icon, color, status, visibility, lead, workflow, settings, metadata, and member counts.

Workflow and status model

Use tenant-specific workflows with ordered statuses, categories, closed-state behavior, transitions, required fields, auto-assignment, and webhook targets.

Task tracking

Manage task items with sequence numbers, titles, descriptions, task type, priority, assignee, reporter, status, dates, estimates, and archive state.

Hierarchy and planning structure

Represent parent tasks, subtasks, epics, modules, sprints, labels, and linked tasks so large initiatives can be broken into actionable work.

Kanban board

Use drag-and-drop board columns over workflow statuses, with optimistic local movement and task cards grouped by status.

Task list and filters

Search and filter tasks by text, project, sprint, module, assignee, status, priority, type, and archive state.

Sprint planning

Create and list sprints with project, dates, goal, status, points, task totals, completed work, and ordered planning state.

Collaboration records

Support threaded comments, reactions, attachments, activity history, and task links at the data-model level for delivery context.

Time and billing context

Record task-level time entries with start and end time, duration, description, billable state, and hourly rate support.

AI interaction tracking

Store AI prompts, responses, provider, model, token use, cost, latency, acceptance, rating, and feedback for task, project, and sprint contexts.

06Architecture

Architecture and security model

Kinetis is implemented as a Next.js application backed by PostgreSQL task-domain tables, tenant-aware API routes, Keycloak-compatible authentication, and Kubernetes deployment manifests.

  • Next.js UI surfaces for projects, task lists, task details, backlog, dashboard, sprints, settings, analytics, and Kanban board workflows.
  • API routes for project listing and creation, task listing and creation, sprint listing and creation, and health checks.
  • PostgreSQL tasks schema covering workflows, statuses, transitions, projects, members, sprints, modules, labels, task items, comments, attachments, links, time entries, saved views, webhooks, AI interactions, and sprint burndown.
  • Tenant-scoped data access using PostgreSQL row-level security with `app.tenant_id` session context and forced RLS on tenant tables.
  • Project visibility rules for private, internal, and public projects, with private project access restricted to project members.
  • Role-based project membership model with admin, member, viewer, and guest roles.
  • Activity-log sanitization for sensitive fields, IP masking, user-agent truncation, and retention-based purge support.
  • Kubernetes manifests for namespace, deployment, service, and secret template deployment.
07Use cases

Where Kinetis fits

Product delivery teams

Track features, bugs, stories, epics, subtasks, priorities, estimates, and sprint progress in one delivery workspace.

Operations teams

Coordinate ongoing requests, incidents, routine work, assignments, due dates, labels, and status transitions.

Agile squads

Plan backlog items, create sprints, define goals, monitor completed points, review burndown data, and keep team boards current.

Professional services teams

Manage client delivery work with project visibility, task ownership, time entries, billable context, and repeatable workflows.

Cross-functional programs

Coordinate modules, dependencies, task links, saved views, activity records, and analytics across multiple teams.

Regulated organizations

Keep project data tenant-scoped, access controlled, auditable, and deployable under European sovereignty requirements.

08Integrations

Integrations and platform connections

Kinetis is designed to operate inside the GoSec/Vianordis platform stack while keeping integration paths open through APIs, webhooks, Kubernetes, and shared identity.

Keycloak-compatible authentication

Keeps access tied to organization accounts, roles, and sign-in policy.

PostgreSQL task-domain schema

Stores structured service records in a controlled tenant-aware backend.

PostgreSQL row-level security

Stores structured service records in a controlled tenant-aware backend.

Kubernetes deployment

Shows how this service fits into the wider Vianordis environment instead of standing alone.

Kubernetes services and secret templates

Shows how this service fits into the wider Vianordis environment instead of standing alone.

Webhook targets on workflow transitions

Makes actions reviewable before work is executed or escalated.

Project-level webhooks

Shows how this service fits into the wider Vianordis environment instead of standing alone.

Ceph-style attachment storage model

Provides the governed place where service data and files are stored.

AI Hub provider metadata model

Powers AI features while keeping model execution inside the controlled environment.

REST-style Next.js API routes

Lets approved systems connect without ad hoc exports or manual copy-paste.

Chart.js analytics surfaces

Shows how this service fits into the wider Vianordis environment instead of standing alone.

Drag-and-drop board interactions

Shows how this service fits into the wider Vianordis environment instead of standing alone.

CSV/export-ready reporting model

Powers AI features while keeping model execution inside the controlled environment.

EU-hosted GoSec Cloud platform operations

Shows how this service fits into the wider Vianordis environment instead of standing alone.

09Trust

Controls for sensitive project work

Kinetis treats project plans, team activity, customer delivery details, comments, attachments, and AI interactions as sensitive operational data.

Tenant isolation

Forced PostgreSQL RLS policies on tenant-scoped task tables

Tenant context

Rows filtered by `app.tenant_id` session context

Project access

Private projects restricted to project members; internal and public scoped to tenant visibility

Project roles

Admin, member, viewer, and guest membership model

Write controls

Project and task creation validate authentication, tenant association, origin, and membership role

Activity hygiene

PII field redaction, IP masking, user-agent truncation, and retention expiry

Tenant consistency

Cross-tenant task links blocked by database trigger

Search performance

Full-text task search indexes and targeted relational indexes

AI transparency

AI provider, model, token, cost, latency, feedback, and acceptance fields

Deployment control

Kubernetes manifests and secret template for controlled environments

10 — Pricing

Plan around teams, workspaces, and deployment control

Kinetis pricing should be scoped by number of users, projects, tenants, storage needs, AI usage, reporting requirements, support expectations, and whether the deployment is managed, dedicated, or customer-controlled.

11FAQ

Questions technical buyers usually ask.

Who is Kinetis for?

Kinetis is for product, engineering, operations, professional-services, and cross-functional teams that need governed task management with European data control.

What kinds of work can Kinetis track?

The task model supports tasks, bugs, features, epics, stories, and subtasks, with priority, owner, project, status, sprint, module, dates, estimates, labels, and hierarchy.

Does Kinetis support Kanban?

Yes. The UI includes a Kanban board built on workflow statuses, with task cards grouped by status and drag-and-drop movement.

Does Kinetis support sprint planning?

Yes. Kinetis includes sprint records with project, name, description, start and end dates, status, goal, point totals, task totals, and completed-work metrics.

How is project access controlled?

Projects can be private, internal, or public. Private projects require membership, and project roles include admin, member, viewer, and guest.

How does Kinetis isolate tenant data?

The database migration enables and forces PostgreSQL row-level security on tenant-scoped tables, with policies tied to the `app.tenant_id` session setting.

What AI capabilities are represented?

The product model includes AI summaries, suggestions, labels, sprint prediction fields, retrospectives, risk assessments, and AI interaction tracking for prompts, responses, tokens, costs, latency, ratings, and acceptance.

Are all schema-level capabilities exposed in the current UI?

Not necessarily. The current app evidence shows UI/API coverage for projects, tasks, sprints, backlog, board, dashboard, settings, analytics, and health routes, while the database model includes additional collaboration and integration capabilities for rollout scope.

Can Kinetis be self-hosted or dedicated?

The app includes Kubernetes deployment, service, namespace, and secret template manifests, supporting managed or dedicated deployment planning where required.

What makes Kinetis different from generic task SaaS?

Kinetis combines task management, agile planning, tenant-scoped governance, RLS-backed isolation, European hosting posture, and AI transparency in a platform designed for controlled enterprise environments.

12 — Next step

Give every project a clear, governed delivery system.

Use Kinetis to plan work, assign ownership, manage boards and sprints, track progress, and keep sensitive project data under sovereign control.