Support matrix
See which paths are available in beta and what is still maturing.
Hosted agents, approvals, gateway capabilities, package management, and workflow execution exist, but some surfaces are still maturing.
Support Matrix
ExecWarden is in beta. Availability varies by path; these rows describe the setup and run behavior you can rely on today.
| Surface | State | Verified today | Current limitation |
|---|---|---|---|
| Codex CLI via MCP | Beta | CLI 0.145.0 setup/connectivity smoke: registration, bearer-token environment setup, config/list output, and OAuth command flags. | This covers MCP setup and command surfaces, not a model session or hosted Codex access. |
| Claude Code via MCP | Beta | Claude Code 2.1.217 setup/connectivity smoke: bearer-header registration, connected-server output, and OAuth client-id setup. | Interactive browser OAuth and model sessions are not covered by this smoke. |
| OpenCode via MCP | Beta | OpenCode 1.18.4 setup/connectivity smoke: remote config, bearer authentication, server-list output, and MCP auth command surface. | Interactive OAuth, installed-client screenshots, and model sessions are not covered by this smoke. |
| Hosted sessions | Beta | Lightweight gateway-backed agent runs plus environment-backed interactive hosted-model sessions, with transcripts and governed capabilities. | The interactive hosted-model path currently requires a running sandbox volume. Ask-mode continuation depends on the calling surface. |
| Hosted GitHub run with connected compute | Verified beta example | July 24, 2026: seeded bug -> patch -> two passing tests -> PR, with one selected repo and agent/* branch boundary. | No merge; the example used scoped Allow grants for unattended completion. |
| Approvals | Beta | Exact approval-payload queueing and replay for gateway-governed calls. | Approval is a gate, not rollback; continuation after approval depends on the calling surface. |
| Workflows / packages | Early beta | Workflow runs, package actions, human input, and run history. | Workflow UI, remote OAuth package auth, and third-party package trust are still maturing. |
Still Maturing
| Workflow UI | Richer trigger editing, event delivery diagnostics, schedule controls, and clearer run evidence for the golden workflow loop. |
|---|---|
| Prompt-assisted workflows | The Workflows-page authoring panel can start an admin-scoped agent that validates and saves workflows or drafts missing setup. A separate review-before-save gate for manual run shape and policy is follow-up work. |
| OAuth package auth | Provider OAuth connection flows, token refresh, and package binding beyond API-key secrets. |
| Package UI bridge | Host-mediated package UI calls for setup, action invocation, live context, and resizing. |
| Third-party package trust | A public package marketplace, package review, signing, provenance verification, version distribution, and stronger secret handling for third-party packages do not exist today. |