Skip to main content
OCEANSOFTDIGITAL SERVICES COMMERCE OS4 MODULES SHIPPEDSLICE-1 IN-PROGRESS · NO VAPOR
OceanSoft Digital Services Commerce OS
Browse OceanSoft's digital-transformation accelerators → scope via a self-serve form → get a quoted SOW approve via workflow receive proof-backed delivery. No email threads. No spreadsheets. Medusa v2 · NZD · local-first.
CEO
New revenue channel
Sell OceanSoft's 6 digital-transformation accelerators via a governed self-serve buying experience — from browse to approved SOW in under 30 minutes.
CTO
4 modules shipped today
company + quote + approval + invite — production-grade Medusa modules. Keycloak auth provider ~30%. Slice-1 adds Digital Services catalogue + SOW generator.
CFO
$0 cloud spend now
Local Docker stack at $0/mo. AWS seam at v0.4 (trigger-gated). NZD pricing. Revenue model: 6 accelerator packages from NZD 10k to NZD 75k per engagement.
🏗️ Core Modules Shipped
4
company · quote · approval · invite (Keycloak = auth provider, not a module; no Document Vault)
🧪 HTTP Integration Suites
4
admin · approvals · companies · quotes
⚙️ Quote Workflows
9
full lifecycle: draft → submitted → approved → accepted
Approval Workflows
4
4 workflows · 5 states: request / approve / reject / cancel / expire
📦 Digital Services
6
FinOps · CloudOps · Terraform · IDP · DataOps · ADLC — v1.2 slice
💰 Cloud Spend
$0
local docker-compose only · no real AWS until Phase v0.4
DIGITAL SERVICES CATALOGUE — 6 ACCELERATORS
OceanSoft's core digital-transformation accelerators. Slice-1 (BC-D10..D15) wires these into the Medusa commerce engine — browse → scope → quote → approve → SOW. Catalogue data sourced from b2bCommerce.digitalServices.
FinOps FOCUS Accelerator
available
CFO / FinOps
FOCUS 1.2+ cost governance deployed, measurable savings identified, CFO board pack delivered
CloudOps Runbooks Accelerator
available
CTO / SRE
Multi-account operations automation live, toil reduced by ≥40%, runbooks as code
Terraform Golden Path Accelerator
available
Platform team
Reusable IaC modules published to private registry, production-ready path proven in 1 sprint
Platform IDP Accelerator
available
CTO
Backstage self-service engineering portal live, golden paths configured for 3 workflows
DataOps Lakehouse Accelerator
available
CDO / Data
Governed data product delivery pipeline operational, first data product published
ADLC Agent Delivery Accelerator
available
Engineering
AI-agent software delivery with test-backed evidence, DORA metrics improving from sprint 1
CONNECT THE DOTS — BUYER JOURNEY TO REAL MODULES
How each buyer-visible step maps to a real Medusa module today. SHIPPED = exists + passing tests. NEW = slice-1 work. EXISTS = in ADLC framework (deferred handoff). Data sourced from b2bCommerce.connectDots.
Golden-Path StepReal Module / SystemStatusGap / Work
Browse catalogueMedusa Product + ProductType digital_service + metadataNEW (small)seed 6 services + schema — BC-D10
Configure scopeScoping form → cart line-item metadataNEW (small)form UI + metadata capture — BC-D11/D12
Submit quote requestquote module (9 workflows)SHIPPEDreuse — no changes needed
Admin reviews / approvesapproval module (4 workflows · 5 states, single-level)SHIPPEDreuse — no changes needed
SOW generatedMarkdown stored as a quote messageNEW (small)generateSow workflow + /commerce:sow-generate — BC-D13
Buyer sees quote / SOW / statuscompany + account/quotes storefrontSHIPPEDsurface SOW message in account/quotes/details/[id] — BC-D14
ADLC project createdADLC framework /adlc.planEXISTS(deferred to v1.3) handoff from approved quote to /adlc.plan
Evidence / CxO reportADLC evidence + llm-docsEXISTS(deferred to v1.4) CxO report generator — roadmap
HONESTY CONTRACT — CORRECTIONS + WHAT IS NOT BUILT YET
These are canonical facts ratified by PO+CA (scope_id: digital-services-commerce-os-slice-1, 2026-06-12). Caveats sourced from b2bCommerce.honestCapability.caveats.
  • CORRECTION (2026-06-12): 4 backend modules ONLY — company, quote, approval, invite. Prior claims of 6 modules were wrong. modules/document/ and modules/auth-keycloak/ do NOT exist.
  • NO Document Vault — modules/document/ does not exist. Document Vault is v1.3 roadmap (after ADLC project auto-creation, multi-level approval, and CxO report generator).
  • Keycloak is an AUTH PROVIDER configured in medusa-config.ts (~30% production-ready). It is NOT a backend module. Claim→entity resolution is stubbed; multi-tenant enforcement is in-progress (BC-101..106).
  • CORRECTION (2026-06-12): 4 HTTP integration-test suites ONLY — admin, approvals, companies, quotes. Prior claims of 6 suites were wrong.
  • Approval is single-level only. Multi-level approval chains (sequential + parallel, threshold-based) are v1.3 roadmap.
  • Digital Services Commerce OS slice-1 (BC-D10..D15) — catalogue + scoping form + SOW generator — is IN-PROGRESS, not shipped. Do NOT claim these as delivered.
  • No real AWS provisioned yet — Phase 1 runs entirely on local Docker Compose. First AWS seam is v0.4 (trigger-gated: design partner requests cloud deployment).
  • Payments are a Stripe TEST-mode mock provider in local dev. Stripe Connect marketplace payout is v0.7+ roadmap, gated on committed seller demand.
SHIPPED MODULES — 4 VERIFIED (NOT 6)
Exactly 4 backend modules · 4 HTTP integration-test suites. Each row traces to a real module path + passing test suite. Keycloak = auth provider (medusa-config.ts), NOT a module. Document Vault = roadmap v1.3, NOT shipped.
#ModuleModule PathTest SuiteStatusDetail
M1Companyapps/backend/src/modules/company/integration-tests/http/companies/shippedCompany entity, employee links, admin routes for buyer-org management
M2Quote (9 workflows)apps/backend/src/modules/quote/integration-tests/http/quotes/shipped9 workflows: full lifecycle from draft → submitted → approved → accepted
M3Approval (4 workflows · 5 states, single-level)apps/backend/src/modules/approval/integration-tests/http/approvals/shipped4 approval workflows · 5 states: request / approve / reject / cancel / expire — single-level only
M4Inviteapps/backend/src/modules/invite/integration-tests/http/admin/ (included)shippedCompany employee onboarding via invitation; delegated admin self-serve
Keycloak OIDCmedusa-config.ts (auth provider)unit test + org-claim extractionin-progressAUTH PROVIDER, NOT A MODULE. ~30% production-ready. Claim→entity resolution stubbed. modules/auth-keycloak/ does NOT exist.
Document Vaultmodules/document/ — DOES NOT EXISTbacklogROADMAP v1.3 — NOT SHIPPED. Do not claim as delivered. SOW stored as quote messages in slice-1 as interim evidence store.
PRODUCT LAYERS
LayerToolingOutcome
StorefrontNext.js 15 App Router · first-party (apps/storefront — MIT)Buyer-facing catalogue, scoping form, quote portal, approval status, and SOW viewer.
BackendMedusa 2.15+ headless · first-party (apps/backend — MIT)4 B2B domain modules: company, quote, approval, invite. Keycloak = auth provider (NOT a module).
IdentityKeycloak OIDC — auth provider in medusa-config.ts (~30% production-ready) · transitions @vymalo→native OIDC (planned per MT-SSO-lld P2)Multi-tenant SSO · org-claim extraction · Principle-I auth boundary. NOT a Medusa module.
ObservabilityGrafana + Prometheus (local docker-compose · ECS Fargate / Grafana Cloud on AWS)Cart conversion, order count, DB connections, latency p50/p95/p99 dashboards.
Cost AttributionFOCUS 1.2+ tags + /commerce:tag-audit (local IaC · CUR 2.0 pipeline on AWS)Per-service cost rollup for CFO chargeback; infracost exits 0 at $0 local.
AI OperationsADLC 40-agent Talent Bench (design/build/test)Agent-scaffolded modules, Playwright E2E smoke tests, and compiled LLM-docs wiki.
NORTH-STAR STRATEGY

"Imagine if OceanSoft could sell its digital-transformation accelerators the way SaaS products sell software — browse a catalogue, scope the engagement, get a quoted SOW, approve it, and receive a proof-backed delivery — all without a single spreadsheet or email thread."

"We needed a FinOps accelerator for our AWS accounts but had no idea where to start. We browsed the catalogue, scoped our requirements in a form, got a SOW back in minutes, and the CFO approved it before lunch. That's a buying experience we've never had from a professional-services firm."

Head of Platform Engineering · ANZ enterprise

TRIGGER-GATED ROADMAP — RATIFIED 2026-06-12
Every phase opens on a real trigger, not a calendar date. Slice-1 (v1.2) is the active build sprint. v1.3/v1.4 (Document Vault, ADLC project auto-creation, CxO report generator) are clearly-labelled roadmap — NOT claimed as shipped.
v1.2Digital Services Commerce OS — slice 1in-progress
Opens on: PO+CA coordination complete (scope_id: digital-services-commerce-os-slice-1)
  • BC-D10 (P0) — Digital-service ProductType + idempotent seed of 6 services
  • BC-D11 (P0) — /services catalogue + scoping-form storefront pages
  • BC-D12 (P0) — Scoping answers → cart line-item metadata → request quote (reuse)
  • BC-D13 (P1) — SOW generator workflow + /commerce:sow-generate + SOW as quote message
  • BC-D14 (P1) — Surface SOW in account/quotes/details/[id]
  • BC-D15 (P0) — E2E proof (HTTP + Playwright) + visual verify
  • BC-DOC1 (P1) — Showcase honesty reframe
Medusa ProductType + existing quote/approval modules (reuse) + Next.js storefront
v0.2Approval depth + audit trailproposed
Opens on: First design-partner using the portal
  • Multi-level approval chains (sequential + parallel, threshold-based)
  • Audit-trail surfacing in storefront (who approved/quoted/when)
  • Quote expiry + re-quote workflow
Medusa-native — zero new infra
v0.3Contract pricing + spending limitsbacklog
Opens on: Design partner requests negotiated / account-specific pricing
  • Contract / account-specific price lists per company
  • Spending limits per company/employee with workflow enforcement
  • Bulk-order / requisition lists
Medusa Pricing module + company module links
v0.4Partner API + first AWS seambacklog
Opens on: First request to integrate an external ERP/procurement system OR partner API
  • Auth-scoped partner / B2B API surface
  • Webhook event delivery (order/quote/approval lifecycle)
  • First AWS deployment seam (RDS/ElastiCache via terraform-aws submodule)
Medusa API + subscribers · AWS infra via terraform-aws submodule
v1.3ADLC project auto-creation + Document Vault + multi-level approvalbacklog
Opens on: Slice-1 (v1.2) E2E proof passes + first paying accelerator customer
  • ADLC /adlc.plan auto-created from approved quote (handoff)
  • Document Vault — append-only evidence store (modules/document/ created here, NOT before)
  • Multi-level approval chains for higher-value engagements
ADLC framework handoff + Medusa File abstraction
v1.4CxO report generator + real Document Vault evidencebacklog
Opens on: v1.3 Document Vault shipped + CxO reporting demand from paying customers
  • CxO report generator from ADLC evidence + llm-docs
  • Real Document Vault as SOW/evidence store (not quote messages)
  • Executive delivery dashboard
ADLC evidence + llm-docs compiled wiki
GOLDEN PATH — FROM STACK UP TO SOW GENERATION
task up → seed 6 services → browse catalogue → scope → quote → SOW generated → smoke test → release cut. All steps autonomous except final git tag (HITL, Principle I). Steps marked (v1.2) require slice-1 to be shipped first.
1.
Start stack
task up
Medusa backend, Next.js storefront, Grafana, Prometheus, and Keycloak running on localhost; health gate passes
2.
Seed data
task seed
6 digital services + companies, employees, quotes, approvals seeded; idempotent — safe to run twice
3.
Browse catalogue
/services (storefront)
6 digital-service cards visible; buyer can configure scope via scoping form (v1.2)
4.
Generate SOW
/commerce:sow-generate <quote-id>
SOW markdown stored as a quote message; visible in account/quotes/details/[id] (v1.2)
5.
Run smoke tests
task test:e2e
Dual-persona smoke (buyer + admin) passes; screenshots in tmp/B2B-Commerce/screenshots/
6.
Release cut
/commerce:release-cut 0.x.0
CHANGELOG entry prepared; HITL commits + tags (Principle I — agent does not push)
RELEVANT COMMANDS
/commerce:medusa-module-new/commerce:storefront-page-new/commerce:sow-generate/commerce:checkout-smoke/commerce:tag-audit/commerce:aws-bootstrap/commerce:release-cut/commerce:storefront-doctor/adlc.plantask uptask seedtask test:e2etask health
REFERENCES