Four trust domains
Atlas chat, AutomationBuilder, protected context ingestion and shared R&D services now run under separate Linux accounts and separate runtime state.
Stronger foundation → connected workflows
A practical update on the infrastructure work, how teams are using Atlas now, and the next execution loops linking Creative, Performance and Data.
01 · Recent migration
Atlas chat, AutomationBuilder, protected context ingestion and shared R&D services now run under separate Linux accounts and separate runtime state.
Each service owns its own credentials and installation. One agent can no longer silently take ownership of another agent’s auth or files.
Fleet updates now drain services, apply changes in order, verify each account and automatically roll back when a gate fails.
A manifest-driven live test suite validates every declared integration after changes and every 24 hours.
The fleet moved to the current Hermes release and GPT-5.6-sol while preserving schedules, state, skills and partner boundaries.
Final migration verification completed with zero failures across the Atlas fleet.
02 · Fix the issues people actually hit
Creative-asset BigQuery reads now use a stable, strictly read-only service account instead of an expiring human login.
If Fireflies misses a meeting, Atlas now falls back to matching Gemini notes rather than silently losing the recap.
AutomationBuilder can attach generated HTML reports in Slack again, with delivery now proven through the actual upload path.
Reference-message and history lookups now route through the identity that actually has read permissions.
Atlas can reliably inspect the Exactius skill surface and act through its own governed GitHub identity.
When a source is not connected, Atlas names the exact gap and routes capability expansion back to R&D.
03 · Usage now
04 · Where usage is deepening
Atlas compares a working copy with the original multi-tab brief, previews the exact edits, waits for approval, writes only changed text cells and preserves wireframes. Eva said it works very well and plans to use it across email types.
Daily DE and UK status sweeps, doer-specific tagging, approval chases, action-list recovery, meeting recaps, task references and live deck edits are becoming normal operational support.
Teammates use Atlas to locate decks and footage, explain creative-performance evidence, draft updates, rebuild slides and resolve what is blocked across ClickUp, Slack, Drive and Figma.
Eitan tested a direct-ClickUp version of the pre-sprint recommendation skill for Omaze UK. It produced the HTML report without depending on the earlier n8n read path, and report attachment delivery is now fixed.
05 · What comes next
Give Performance a controlled path to turn ready assets into upload-ready ads, with validation and inline Slack QA before anything launches.
Combine Laurent’s resizing, reformatting, QA, naming and export skills behind one Atlas invocation and one deliberate checkpoint.
Connect Atlas’s operational context to the governed analytical layer without pretending raw BigQuery access equals semantic understanding.
Deepen Performance, DA and partner context, fill source gaps and keep evidence, freshness and uncertainty explicit.
Maintain a human-readable capability registry across Cowork skills, Atlas-only workflows and shared automations, with governance still to be agreed.
Add UK as a separate governed context boundary while preserving deliberate links to shared Exactius and Omaze knowledge.
06 · Performance execution
The Performance team should be able to hand Atlas a verified asset set and receive upload-ready ads without repetitive platform setup.
Take the correct exports, copy, destination URLs, campaign structure and naming context.
Create platform-ready payloads consistently across variants and placements.
Catch missing fields, wrong dimensions, duplicate names, broken URLs and mismatched assets.
Show exactly what will be created so Performance can approve, correct or reject before launch.
07 · Laurent’s Creative workflow
Test the chain on a copied Figma board, review the outputs with Laurent, then package it as an Atlas-invoked Creative workflow.
08 · How the pieces line up
Each feature is useful independently. The architecture keeps their inputs and outputs compatible so they can later become one governed Creative → Performance loop.
09 · Intelligence + continuity
Atlas contributes the reason behind work, decisions and tests. The Data Agent contributes controlled metric retrieval and semantic definitions. The handoff must preserve grain, attribution, freshness and uncertainty.
Bring in the delivered Performance, DA and PM source maps, deepen recurring meeting and workflow coverage, and retain explicit provenance rather than dumping raw source material.
Atlas can reconcile Cowork skills, Atlas-only workflows and shared automations into a readable guide, flag duplicates and keep change proposals human-reviewed. The final home and governance still need discussion.
Read-only BigQuery connectivity is live for bounded creative-asset questions. Broader business KPI answers wait for the semantic and operational layers to be ready.
10 · Omaze UK expansion
DE-specific operating context, evidence, workflows, source access and learnings remain governed inside the DE boundary.
UK receives its own source map, operating context, permissions and ingestion rules instead of being written into the DE vault.
Atlas becomes broader by combining reusable foundations with isolated partner context, not by turning every account into one undifferentiated memory store.