2026 H2 Product Roadmap: From Enterprise Permissions to Data Governance
What we're building next, what's done, and what partners and enterprise customers can expect.
The One-Line Version
In the second half of 2026 we're pushing OntiCards along one line: making it usable, pleasant, and safe inside real enterprises. From "works" to "production-ready."
In Progress: Data Governance Expansion
Data governance isn't a one-week project. We're making it finer-grained:
- Field-level metadata lineage: track where every column flows from
- Glossary versioning: finance, e-commerce, chemicals — each company's glossary has its own evolution history
- Quality scoring upgrade: from a bare number to "score + rule hit details + fix suggestions"
The goal: a quality score shouldn't be an abstract 81.1 — it should be a checkup report a data owner can act on.
Planned: Four Big Items
In order of execution:
- Enterprise-grade permissioning: current workspace-level permissions aren't granular enough. We're introducing a multi-layer model with role, department, and data-domain scopes, plus field-level, row-level, and report-level access control.
- Multi-tenant and organization structure: full tenant isolation for group customers and ISV partners. A parent account with multiple sub-organizations, each with its own billing, data, and glossary.
- SSO upgrade: support for OIDC, SAML, WeCom, Lark, and DingTalk — the five most common SSO stacks in our market.
- Data landing: capture the trail of all data consumption (queries, API calls, subscriptions) back into the customer's own data warehouse. Critical for audit, reconciliation, and downstream analytics.
Done: H1 Milestones
A quick look back:
- ✅ Card-driven intelligent Q&A with ontology constraints
- ✅ Nine database connectors (including DM and KingBase)
- ✅ Automatic data card generation
- ✅ Basic data quality check + rule library
- ✅ Industry glossary templates (finance, e-commerce)
- ✅ API access + AI agent integration
What's Next for Partners and Enterprise Customers
If you're already using OntiCards, here's what to plan for:
- Audit data ownership: end-of-year permission upgrades will make "whose data is whose" very concrete
- Prepare SSO integration materials: IdP info, callback URLs, user attribute mapping
- Inventory current data flows: decide which consumption paths need "auditable landing"
Final Note
A roadmap isn't a promise, it's a direction. We'll publish actual progress every month via product update notes; anything blocked will be communicated to partners immediately.
Continuing the work — making data speak.