A glowing golden compass rose floating above the anvil, with six radiating beams ending in icons for the six enterprise concerns: network, architecture, calendar, security shield, audit ledger, deployment rocket
Appendix J

Plan Forge for Enterprise

The landing page for enterprise evaluators, reference architecture, GitHub stack alignment, operator playbook, compliance reference, and the map of where to find every enterprise answer.

Audience: Platform leads, security architects, and engineering managers evaluating Plan Forge for multi-team deployment in regulated or large-scale environments.

TL;DR: Plan Forge is the open-source AI-SDLC orchestrator for teams whose code lives on GitHub. It is local-first by design (no Plan Forge SaaS plane), composes cleanly with Microsoft Foundry and other enterprise model gateways, and ships the orchestration layer GitHub explicitly leaves to the ecosystem.

Why Plan Forge for the enterprise

Most "AI-SDLC" tools today are point solutions: a code completion in the IDE, an autonomous agent that opens one PR, a code reviewer that comments on PRs. Plan Forge is the layer above those, a plan-driven, gate-enforced, cost-tracked, multi-slice orchestration framework that turns a feature spec into a series of validated commits.

Three structural choices make it enterprise-fit:

  1. Local-first / air-gappable control plane. The orchestrator runs on the developer's box or a CI runner. There is no Plan Forge SaaS service. Source code does not leave the customer's network unless the customer chooses to call a hosted LLM (and even then, all logging stays local). This is a structural difference from Cursor (workers can run on-prem but the control plane is in AWS) and Sourcegraph Amp (cloud-only, no self-host, no BYOK).
  2. GitHub-native by design, not by integration. Plans, slices, and validation gates compose with GitHub Issues, Copilot Cloud Agent, Actions, AGENTS.md, and the GitHub MCP server. The architecture extends GitHub primitives in the direction GitHub has signaled (via the Copilot SDK preview and AGENTS.md/MCP/Skills as Linux Foundation standards) is the ecosystem's lane.
  3. Open standards throughout. AGENTS.md, MCP, Agent Skills, and OpenTelemetry gen_ai.* semantic conventions are first-class. No proprietary file formats, no vendor lock-in, no "you must use our cloud."

Where to find what you need

This page is a map. Each link goes to the document that answers a specific enterprise concern.

Architecture and reference deployments

You're askingRead
What does a 5-team Plan Forge deployment look like?Reference Architecture
How does Plan Forge compose with Microsoft Foundry / Azure OpenAI in our tenant?Reference Architecture — Microsoft-shop variant
How does Plan Forge align with the GitHub stack we already pay for?GitHub Stack Alignment (Appendix H), and the deeper Plan Forge on the GitHub Stack (Appendix I)
How do we onboard 12 squad members on Day 1?Agent Factory Recipe

Operations

You're askingRead
What does Day 1 / Week 4 / Week 12 look like for a team adopting Plan Forge?Fleet Operator Playbook
How do we run Plan Forge across N teams with shared visibility?Fleet Operator Playbook — Multi-Team
What metrics should we track?Fleet Operator Playbook — KPIs

Security, compliance, data residency

You're askingRead
What gets logged, where, in what format, and how do we export it for audit?Compliance and Data Residency
Where does our source code go when we run Plan Forge?Compliance — Data Flow
Can we run Plan Forge fully air-gapped?Compliance — Air-Gapped
Does Plan Forge work with Azure Government?Compliance — Azure Government
What about HIPAA, FedRAMP, SOC2, PCI?Compliance — Compliance Posture

Identity, auth, RBAC

You're askingRead
How does authentication work today?Compliance — Identity
What's the roadmap for Entra ID / SAML / SCIM?Compliance — Roadmap

Telemetry and observability

You're askingRead
Can we ship Plan Forge traces to Splunk / Datadog / Application Insights?Compliance — Observability Export

Cost and budgeting

You're askingRead
How do we estimate cost for a plan before running it?Fleet Operator Playbook — Cost Discipline
How do we attribute cost to teams and engineers?Fleet Operator Playbook — Cost Attribution

What Plan Forge is not

We are deliberate about lanes. Plan Forge is not:

  • An IDE replacement. Cursor, Windsurf, VS Code Copilot Chat all do that better. Plan Forge sits above the IDE.
  • An LLM provider. Plan Forge talks to Anthropic, OpenAI, xAI, GitHub Copilot, Microsoft Foundry. Pick yours.
  • A first-party agent runtime in the Foundry/Agent-Service sense. Plan Forge orchestrates the SDLC; Microsoft Agent Framework and Foundry Agent Service are the agent runtime layer one altitude below.
  • A SaaS product. There is no Plan Forge cloud. The dashboard runs on localhost:3100. Customers own their deployment top to bottom.

Quick start for evaluators

If you have 30 minutes:

  1. Read Reference Architecture for the picture.
  2. Read GitHub Stack Alignment for the why.
  3. Skim Compliance and Data Residency, Sections 1–3 cover 80% of typical security review questions.

If you have 90 minutes:

  1. Read Fleet Operator Playbook, gives you a calendar, not a feature list.
  2. Read Agent Factory Recipe, the concrete onboarding pattern.

If you want to run it:

  1. Follow the Quickstart walkthrough, then return here for the multi-team patterns.

Engineering principles that make this work

Plan Forge is built on five non-negotiables that show up in every layer:

  1. Architecture-first: every change asks five questions before code is written (see .github/instructions/architecture-principles.instructions.md)
  2. Separation of concerns: orchestrator → worker → repository → presentation, never collapsed
  3. Test-driven for business logic: Red → Green → Refactor
  4. Type safety: explicit types at every boundary
  5. Open standards: AGENTS.md, MCP, Skills, OTel gen_ai.*, adopt, don't invent

Customers can read the same instruction files Plan Forge agents read. Nothing is hidden. The framework is the documentation.

Support model

Plan Forge is open source (MIT). Support model is honest:

  • Issues on GitHub for bugs and feature requests
  • GitHub Discussions for usage questions
  • Self-repair tooling built in, forge_meta_bug_file lets agents file defects against Plan Forge itself when they encounter them, and the project is dogfooded against itself
  • No commercial support tier today. This may change. When it does, the open-source core stays open source.

For enterprises that need a commercial relationship, the right pattern today is to use Plan Forge directly and engage your usual platform-services partner (Microsoft FDE, Slalom, Accenture, etc.) for integration work.