Overview
The Composable Agentic Platform (CAP) is the TomorrowX Data Mediation™ platform, a control architecture that ensures the right data, context and controls participate in every AI, cyber and interoperability workflow. CAP is not an application platform or an embedded rules engine. Programmable Data Agents operate in the data path itself, terminating connections at the protocol level, processing live requests and responses in flight and passing traffic on, all without changes to the systems on either side. Capability is added between systems, not inside them, so organisations can observe, govern, transform, simulate and augment interactions without rewriting, migrating or directly integrating the applications involved.
CAP Console is the composition and operations environment. Teams assemble solution logic, user experiences and operational workflows from pre engineered, security and performance tested components, reuse proven building blocks, prototype with agility and move proven designs into production across web and multi protocol environments. This reduces delivery effort, shortens development cycles and accelerates deployment.
Built for enterprise and public sector organisations operating in highly regulated, secure and air gapped environments, CAP enables governed AI adoption, cyber uplift, legacy system extension and interoperability without invasive change, major redevelopment, centralising data or forced migration. Interventions can be proven, changed or removed without making the surrounding estate dependent on an irreversible transformation.
The Enterprise Edition includes the full TomorrowX library of plug and play functional and programming components, giving teams a repeatable foundation for composing production ready solutions at speed, closer to where systems, controls and operational requirements already exist.
Highlights
- Data Mediation™ in the data path: Programmable Data Agents observe, govern and transform live traffic at the protocol level, without changing the systems on either side.
- Connect AI and cyber capabilities to existing systems without invasive change, application rewrites, centralising data or forced migration, including in regulated, secure and air-gapped environments.
- Compose web and multi-protocol solutions from pre-engineered, security and performance tested components, and move proven designs into production at speed.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Cost/hour |
|---|---|
t3.large Recommended | $35.675 |
t3a.medium | $35.675 |
t3.medium | $35.675 |
m5.xlarge | $35.675 |
t3a.xlarge | $35.675 |
t3a.large | $35.675 |
m6i.large | $35.675 |
t3.xlarge | $35.675 |
m6i.xlarge | $35.675 |
m5.large | $35.675 |
Vendor refund policy
Please contact TomorrowX for refund & policy https://tomorrowx.dev/get-help/
Refer to the AWS Marketplace Buyer Guide for further details regarding:
- Free trials for AMI-based products https://docs.aws.amazon.com/marketplace/latest/buyerguide/buyer-free-trials.html
- Subscribing to an AMI private offer https://docs.aws.amazon.com/marketplace/latest/buyerguide/buyer-private-offers-subscribing-ami-private-offer.html
- Cancel your AMI subscription https://docs.aws.amazon.com/marketplace/
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
This is a maintenance release of the Composable Agentic Platform (CAP) Console on Red Hat Enterprise Linux 10.1 (Coughlan), adding a complete, digitally signed Software Bill of Materials (SBOM) to the distribution, aligned with the 2026 Minimum Elements for a Software Bill of Materials published by CISA and seventeen partner cyber security agencies on 29 July 2026. The embedded Jetty 12.1.10 server runtime is unchanged from the previous AMI, and no bundled dependency versions have changed. There are no API changes and no changes to request or response behaviour. All existing rulesets, extensions, and TCL scripts continue to work unchanged.
Software bill of materials:
- Signed CycloneDX SBOMs included - The distribution now ships CycloneDX 1.6 SBOMs in the sbom/ directory at the distribution root (and inside the Console web application under WEB-INF/sbom/), covering the Console application, the CAP core libraries, and the bundled RulesBaseFactory extension. Every component entry carries a name, version, package identifier, SHA-256 hash, license, and producer.
- Full runtime coverage - The SBOM covers everything that ships in the image, including the embedded Jetty 12.1.10 server libraries and the Windows service wrapper, each listed with hashes and licenses. A newly published vulnerability in any shipped component can be checked against the SBOM with confidence.
- Offline signature verification - Each SBOM is digitally signed. The signature (.sig) and signing certificate (.pem) ship next to each SBOM and can be verified offline with the open source cosign tool - no network access or account required.
- Extension SBOMs - Extensions delivered through the TomorrowX update server now carry their own signed CycloneDX SBOM (bom.json, with bom.json.sig and bom.json.pem) inside each extension package.
Platform updates:
- Console and RulesBase at build 30050 - The Console application and RulesBase library move to build 30050 for this release. The CAP Agent engine remains at build 30040: engine code is unchanged, and rule execution behaviour is identical.
- No dependency changes - All bundled dependency versions are unchanged from build 30040 (Netty 4.2.16, HttpCore5 5.4.3, Log4j API 2.25.5, and the rest of the 30040 baseline).
- RHEL 10.1 + JDK 21 LTS baseline retained - The AMI keeps the Red Hat Enterprise Linux 10.1 (Coughlan) + JDK 21 LTS foundation, the embedded Jetty 12.1.10 server, systemd cap-console service, first-boot cap-init credential initialisation, and pre-installed AWS Systems Manager agent.
- Reproducible AMI build - The AMI is produced by the same auditable EC2 Image Builder pipeline (triggered from GitHub Actions OIDC) used for prior releases, baked from the identical CI-built Console distribution published to all other channels. The SBOMs in this image describe, and are signed against, exactly the bytes the image contains.
Upgrade notes:
- Existing installations can take this content as an in-place Console application update via the TomorrowX update server; the in-place update delivers the same signed SBOMs (under WEB-INF/sbom/), does not perform a server-level Jetty change, and requires no PDA restart. Launch from this AMI when you want a fresh full-stack image (OS, JDK, Jetty server, and Console together).
- No agent changes required - The CAP Agent engine carries no changes. No JAR replacement across PDA, Multi-Protocol, or Stress agent lib directories is needed as a result of this update.
For full documentation see: https://docs.tomorrowx.com
Additional details
Usage instructions
As with all new programming languages, the Hello, World! program generally is a computer program that outputs or displays the message Hello, World. Such a program is very simple in most programming languages and is often used to illustrate the basic syntax of a programming language. It is often the first program written by people learning to code.
Now step inside and follow these steps to complete your very first composition with the Composable Agentic Platform by TomorrowX. https://docs.tomorrowx.com/cap/guides/hello-world
IMPORTANT: Please read the docs - Essential things to do first In order to manage the default accounts, and change passwords. https://docs.tomorrowx.com/cap/product-reference/getting-started/essential-things-to-do-first
First time users can launch the console at http://{Instance IP/DNS}/console e.g. http://12.34.56.78/console User ID: ec2-user Password: {instance-id}
Further information can be found in the dedicated AWS User Deployment Guide. https://docs.tomorrowx.com/cap/product-reference/installation-and-configuration/aws-user-deployment-guide
Resources
Vendor resources
Support
Vendor support
Support is delivered through partners, with TomorrowX providing platform support and specialist advisory capability where applicable. Support levels scale by license tier and are confirmed during onboarding. The customer retains control of infrastructure and networking within their AWS environment. For platform support requests, please visit: - https://tomorrowx.dev/get-help/
Watch: How to launch on AWS Marketplace (3m:20s)
https://player.vimeo.com/video/726599460?h=c6cd92b504
Red Hat Enterprise Linux on Amazon EC2 FAQs https://aws.amazon.com/partners/redhat/faqs/ .
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products


