Demiforge · v1.0 canonical

Build enterprise software
before writing code.

Transform one business idea into a governed engineering package produced by an AI engineering organization. Ready to hand to Cursor, Claude Code, or v0.

Halts at Development Ready·SOC2 · GDPR · EU AI Act aware·Every artifact versioned
studio · Acme CRM · engineering-graph
Active pipeline: Step 1 of 9
CEO · Discoveryv1.0
running
Business Analysisv1.2
draft
Product Mgmt · PRDv1.1
draft
UX · Sitemapv1.0
draft
Solution HLDv0.3
draft
Database Designv1.0
draft
API · OpenAPIv1.0
draft
Security · STRIDEv1.0
draft
Release · EDPv1.0
draft

Orchestrator Node

Discovery

ArtifactBRD
Confidence98%
TierReasoning Tier
ModelGemini 3.1 Pro
Usage18 credits
UpstreamUser Input

Governance Gates

  • Syntax Validation100%
  • Semantic Clarity
  • Cross Consistency
  • Dependency Check
TemplatesSaaS ProductEnterprise CRMERPMarketplaceMobile AppAI Agent PlatformData PlatformAPI PlatformInternal Tool

Architectural Tiers

Two targets. Choose SaaS speed or Enterprise security.

Configure your target runtime inside our Discovery Wizard. Demiforge automatically formats all 32 blueprints to match your organization's architectural and compliance boundaries.

SaaS & Startup Profile

Optimized for high-velocity builders, MVPs, and startups looking to optimize time-to-market. Outputs lightweight, cost-effective serverless architectures.

Hosting & Compute: Vercel, Netlify, or Supabase hosting with serverless/edge runtimes (Deno, AWS Lambda).
Database: Serverless databases (Supabase BaaS / Firebase) utilizing client-side SDK query integration secured via RLS.
Integration: Standard OAuth providers and Git-trigger automated deployment pipelines.

Enterprise & MNC Profile

Optimized for multinational corporations requiring rigorous data isolation, network security, and compliance. Outputs secure corporate VPC network designs.

Infrastructure: Isolated VPCs across AWS/Azure/GCP with private subnets, load balancers (ALBs), API Gateways, and WAF.
Server & DB: Containerized microservices (Kubernetes/ECS) with high-availability database replication (RDS Aurora Multi-AZ) and pgBouncer pools.
Governance: SAML 2.0 Single Sign-On (Okta / Entra ID), KMS envelope key encryption, and STRIDE compliance logs.

Architecture

Built on thirteen principles. Only two matter to you.

Nothing is a black box. Every decision Demiforge makes is a versioned artifact in a graph you can audit, edit, or roll back.

Engineering Knowledge Graph

Every deliverable is a versioned node in a DAG. Change the DB schema, and every affected API, screen and story is flagged automatically.

AI Kernel

One intelligence layer for context assembly, prompt construction, model routing, retrieval and cost estimation. Agents stay stateless.

Virtual engineering org

CEO, BA, PM, UX, Architects, DevOps, QA, Security and Release Manager — instantiated per workflow template, not hardcoded.

Quality gates & governance

Seven automated checks — syntax, semantic, consistency, dependency, policy, security, human — before any artifact is approved.

Version everything

Artifacts, prompts, templates and schemas are versioned with side-by-side diffs and one-click rollback.

Multi-tenant by default

Row-Level Security on every table. Organizations, teams, projects and artifacts stay isolated end-to-end.

Virtual organization

Meet your AI Engineering Organization

15 agents working together, governed by one Engineering Graph. They coordinate, validate, and compile your software specifications.

AI CEO
Discovery & vision
Idle
Preferred TierReasoning Tier
Last Run3m ago
Avg Latency2.3s
Confidence98%
Business Analyst
Market & personas
Idle
Preferred TierBalanced Tier
Last Run5m ago
Avg Latency4.1s
Confidence94%
Product Manager
Stories & scope
Idle
Preferred TierReasoning Tier
Last Run10m ago
Avg Latency8.5s
Confidence95%
UX Lead
Flows & IA
Idle
Preferred TierBalanced Tier
Last Run12m ago
Avg Latency5.2s
Confidence92%
Solution Architect
HLD & C4
Idle
Preferred TierReasoning Tier
Last Run15m ago
Avg Latency12.4s
Confidence91%
DB Architect
Schema & DDL
Idle
Preferred TierReasoning Tier
Last Run18m ago
Avg Latency6.8s
Confidence96%
API Architect
Contracts
Idle
Preferred TierReasoning Tier
Last Run21m ago
Avg Latency5.9s
Confidence97%
AI Architect
Prompts & RAG
Idle
Preferred TierReasoning Tier
Last Run25m ago
Avg Latency9.2s
Confidence96%
Frontend Lead
Screens
Idle
Preferred TierBalanced Tier
Last Run30m ago
Avg Latency7.1s
Confidence94%
Backend Lead
Services
Idle
Preferred TierBalanced Tier
Last Run34m ago
Avg Latency8.3s
Confidence95%
DevOps
CI/CD & infra
Idle
Preferred TierBalanced Tier
Last Run40m ago
Avg Latency6.2s
Confidence96%
QA Lead
Test strategy
Idle
Preferred TierFast Tier
Last Run45m ago
Avg Latency3.1s
Confidence95%
Security
STRIDE & compliance
Idle
Preferred TierReasoning Tier
Last Run50m ago
Avg Latency11.2s
Confidence98%
Tech Doc
Manuals
Idle
Preferred TierFast Tier
Last Run55m ago
Avg Latency4.8s
Confidence96%
Release Mgr
Sprints & export
Idle
Preferred TierBalanced Tier
Last Run1h ago
Avg Latency5.5s
Confidence99%

Lifecycle

Fifteen stages, from raw idea to release.

Every stage produces a versioned artifact. Every artifact passes seven quality gates before it's yours to approve.

01
Discovery
AI CEO
Project goals & BRD
02
Business Analysis
Business Analyst
Competitors & personas
03
Product Management
Product Manager
Gherkin user stories
04
UX Design
UX Designer
Sitemap & flow tree
05
Solution HLD
Solution Architect
C4 container diagrams
06
Database Design
Database Architect
ERDs & DDL
07
API Design
API Architect
OpenAPI / Swagger
08
AI Design
AI Architect
Prompt library & RAG plan
09
Frontend Spec
Frontend Lead
File tree & screens
10
Backend Spec
Backend Lead
Triggers & function grid
11
DevOps Planning
DevOps Engineer
Dockerfiles & CI YAML
12
QA Planning
QA Engineer
Playwright specs
13
Security Design
Security Engineer
STRIDE & GDPR checklist
14
Documentation
Tech Doc Specialist
User & ops manuals
15
Release
Release Manager
Sprint board & EDP export

AI Kernel

One intelligence layer. Every agent, every model.

The Kernel owns context, prompts, retrieval, routing and cost. Agents stay stateless. Models stay swappable.

Kernel · runtime
ape-kernel
kernel.route({
  agent:   "database_architect",
  stage:   6,
  context: graph.slice(node.id),
  memory:  ["project", "org", "global"],
  tier:    "premium_reasoning",
  budget:  { max_credits: 400 },
  gates:   [syntax, semantic, consistency,
            dependency, policy, security, human]
})
Context assembly
Memory manager
Prompt construction
Knowledge retrieval (RAG)
Model routing (Fast / Balanced / Premium)
Tool invocation
Response validation
Cost optimization
Governance engine
Confidence scoring

Engineering Design Package

32 deliverables. One ZIP.

When your project reaches Development Ready, Demiforge compiles all 32 blueprints formatted to your selected profile (SaaS or Enterprise) into a single Engineering Design Package ready for your developers.

  • 01Executive Summary
  • 02Business Requirements Document
  • 03Product Requirements Document
  • 04Market Research Report
  • 05User Personas
  • 06Business Process Flows
  • 07Complete Module List
  • 08Functional Requirements
  • 09User Stories (Gherkin)
  • 10Feature Specification
  • 11UX Documentation
  • 12UI Design System
  • 13Screen Inventory
  • 14Database Design (ERD)
  • 15PostgreSQL Schema (SQL)
  • 16Supabase Design
  • 17API Documentation (OpenAPI)
  • 18AI Architecture
  • 19Solution Architecture (HLD)
  • 20Low-Level Design (LLD)
  • 21Security Architecture (STRIDE)
  • 22Performance Architecture
  • 23DevOps Planning
  • 24Testing Strategy
  • 25Project Plan
  • 26Resource Planning
  • 27Cost Estimation
  • 28Risk Register
  • 29Compliance Matrix
  • 30Deployment Guide
  • 31Operations Manual
  • 32Engineering Export Package

Quality

Seven gates before you see a thing.

Auto-approval is available for low-risk stages. Critical artifacts — schemas, APIs, security — always require human sign-off.

Gate 1

Syntax

Outputs match strict JSON schemas.

Gate 2

Semantic

Readability, clarity, completeness.

Gate 3

Cross-artifact consistency

APIs match DB columns. Fields match stories.

Gate 4

Dependency verification

No broken links in the DAG.

Gate 5

Governance & policy

Org model constraints and allowlists.

Gate 6

Security & risk

RLS status and STRIDE threat review.

Gate 7

Human approval

Manual sign-off — required for DDL, APIs, security.

Plan software the way a CTO would sign it off.

Open the Studio, drop in your idea, and watch a fifteen-stage engineering org do the work — governed by you, exported to your coding tools.