What AURORA Does
PULSAR captures the signal. ASTRAL holds the baseline. AURORA makes sense of both.
AURORA is a unified operations platform that connects to PULSAR and ASTRAL via their MCP servers, exposes a single unified interface to your AI tool, and provides cross-tool diagnostics that neither product can answer alone. AURORA stores no data โ all data lives in PULSAR (MongoDB) and ASTRAL (Git). AURORA is purely a query, orchestration, and intelligence layer.
Cross-Tool Diagnostic Tools
Correlate Drift with Audit
Who in the portal triggered this drift commit? โ Gets recent Git commits from ASTRAL and PULSAR audit events in the same window, matches by timestamp and resource name. Directly satisfies DORA Article 11's requirement to demonstrate who changed what and why.
Diagnose Policy Errors
Why is this compliance policy erroring on some devices? โ Fetches policy config and assignments from ASTRAL, queries PULSAR for audit events touching that policy, synthesises a narrative answer. Turns a 2-hour investigation into 2 minutes.
Explain Device Compliance
Why did this device suddenly become non-compliant? โ Pulls assigned policies from ASTRAL, fetches all PULSAR audit events for the device, synthesises a compliance timeline with AI-generated narrative.
Tenant Security Summary
What happened in my tenant this week that I should know about? โ Combines ASTRAL open drift PRs with PULSAR event summary, generates an executive briefing. Weekly security digest without manual work.
Compare Scopes
What's different between my production and development Conditional Access policies? โ Compares configuration state across AURORA's configured named scopes (production, staging, test tenants).
Multi-Scope Orchestration
AURORA connects to multiple named ASTRAL instances within one organisation โ production read-only alongside development read-write, with direct configuration comparison between scopes. This is a distinct capability from what ASTRAL or PULSAR can deliver independently.
Enriched SIEM Forwarding
PULSAR forwards raw audit events to a SIEM. AURORA forwards enriched events โ audit events correlated with ASTRAL configuration state at the time of the event. Each forwarded event carries:
- The current ASTRAL snapshot state of the affected resource
- Whether a matching Git commit exists in ASTRAL within the same time window
- Risk signals: whether the affected policy is tagged high-sensitivity, whether the actor holds a privileged role
This produces qualitatively higher-quality SIEM data than any direct Microsoft integration delivers.
Pricing
AURORA is priced per-tenant, not per-user. Self-hosted customers bring their own Azure OpenAI endpoint (BYOAI). Hosted includes fully managed infrastructure and AI.
| Tier | Self-Hosted | Hosted |
|---|---|---|
| Single tenant | โฌ259/mo (โฌ2,590/yr) | โฌ389/mo (โฌ3,890/yr) |
| Up to 5 scopes | โฌ429/mo (โฌ4,290/yr) | โฌ599/mo (โฌ5,990/yr) |
| Enterprise | Custom | Custom |
Annual billing includes ~15% discount.
Support is included with all AURORA tiers (email, 2-business-day SLA). Enterprise includes a dedicated Slack channel and same-day response.
EU Compliance Notes
- Self-hosted: runs entirely on your Azure infrastructure, EU data residency preserved, no data processing agreement required with CQRE for the core product.
- Hosted: CQRE manages the stack. EU data is stored and processed within the EU/EEA. A GDPR data processing agreement (DPA) is required before onboarding.
- BYOAI self-hosted: pointing
LLM_BASE_URLat your own Azure OpenAI EU endpoint ensures no tenant data leaves your region.
Interested in AURORA?
AURORA is in active development. Contact us to discuss your requirements, join the early access program, or get help sizing the right tier.