Platform Orchestration Background Job Management isAI Maestro IntelOps License Manager Replay Security & Governance Insights AppStore Harmony Capabilities AI Engine Solutions By Use Case Failed Job Recovery SAP Cloud ALM Recovery Modernize Job Scheduling Autonomous Incident Resolution Zero-Touch IT Operations SAP System Refresh Automated Upgrades & Patching By Industry Manufacturing Consumer Goods Banking & Financial Services Retail Healthcare & Life Sciences Public Sector Utilities By Line of Business Order-to-Cash Procure-to-Pay Record-to-Report Supply Chain Hire-to-Retire Customers Resources Blog Thought Leadership Help Docs Events CIO/CTO CFO CPO CEO Tech Director App Director CISO VP Sales Request Demo
Platform · AppStore

Extend the Platform Without Leaving Its Governance

No prebuilt library covers every operation, so teams write scripts, and those scripts end up scattered, unversioned, and outside any control. Symphony AppStore brings extension inside the platform: build a custom node once, publish it to Flexi Flow, reuse it as a governed action, and connect the repositories the code already lives in.

★★★★★4.7 / 5 on Gartner Peer Insights
In short

Symphony AppStore is the extensibility layer: a repository of reusable automation apps, scripts, and templates, plus the ability to build custom nodes that run inside Flexi Flow.

Beyond 400+ prebuilt nodes, teams build custom nodes such as Python or SQL scripts that appear directly in the Flexi Flow designer for reuse, catalogue templates in Fastrack for one-input execution, and connect GitHub or Bitbucket through Repo Configuration. Custom logic runs under the same identity, policy, and audit as every other action, so extending the platform never means going around its governance.

0+
Prebuilt Nodes
Ready-to-use actions across cloud, SAP, OS, DevOps, security, ITSM, and data, before a line of custom code
0
Codebases for Custom Nodes
Build custom nodes in multiple languages, so extension fits the skills the team already has
0
Core Modifications
Custom nodes extend the platform through standard interfaces, with no change to the systems they run against
The extensibility gap

Every Platform Hits the Edge of Its Library

A prebuilt catalogue gets an automation platform most of the way, then a real operation needs the one action the library does not have. What happens next decides whether the platform stays governed or quietly leaks control.

01

The library never covers everything

However large the prebuilt set, some operation always needs a bespoke step, so teams reach for a script the moment the catalogue runs out.

02

Custom logic escapes the platform

Those scripts run outside the automation platform on a server or a laptop, so they carry none of its identity, approval, or audit and become shadow automation.

03

Everyone rebuilds the same script

Without a shared, governed place to publish extensions, each team writes its own version of the same logic, so effort is duplicated and quality varies.

04

Extensions bypass governance

A script that runs outside the platform sidesteps the vault, the roles, and the audit trail, so the more a team extends, the weaker the control becomes.

Watch it extend

From a Gap in the Library to a Governed Reusable Node

These are the AppStore patterns, each bringing a custom step inside the platform so it runs under the same governance as a prebuilt node rather than as a script on a server.

Build a Node · the step the library lacks
1
Identify
An operation needs a step the prebuilt library does not cover, the point where teams would otherwise reach for an off-platform script.
2
Write
The logic is written as a custom node, for example a Python or SQL script, in the language and skills the team already has.
3
Define
Inputs, outputs, and the credential it needs are defined, so the node draws secrets from the vault rather than holding them in source.
4
Test
The node is validated before publish, so a custom step enters the platform proven rather than as an untested script.
The one action the library lacked is built as a first-class node, ready to run under the platform's governance.
Publish to Flexi Flow · reusable, drag-and-drop
1
Publish
Once built, the custom node appears directly in the Flexi Flow designer alongside the 400+ prebuilt nodes.
2
Compose
It is dragged into Templates and Jobs and combined with prebuilt nodes, so a bespoke step slots into a governed workflow.
3
Reuse
Any authorised team reuses the same node, so a solution built once is shared rather than rewritten across teams.
4
Govern
Each run carries identity, policy, and audit like any prebuilt node, so reuse never means ungoverned code spreading.
A custom node becomes a shared, governed building block, composed into workflows like any other action.
Catalogue in Fastrack · one-input execution
1
Configure
A proven template is configured into the Fastrack catalogue with its inputs defined for a specific service.
2
List
It appears in the Fastrack catalogue, so an authorised user runs it with minimal input rather than rebuilding the workflow.
3
Execute
The catalogued service runs under the same governance, so a one-click operation is still identity-bound and audited.
4
Standardise
The team runs the same proven automation the same way each time, so a service is consistent rather than reinvented.
A proven automation becomes a one-input, governed service, so common operations run consistently without rebuilding.
Connect a Repo · version-controlled extension
1
Configure
Repo Configuration connects a repository such as GitHub or Bitbucket with its connection and access details.
2
Version
Custom code stays under version control where the team already manages it, so extensions are reviewed and versioned.
3
Sync
The platform draws the code from the repository, so a node reflects the reviewed, current version rather than an in-place edit.
4
Control
Access to the repository connection is governed, so who can change extension code is controlled like any other credential.
Extensions stay versioned and reviewed in the team's own repositories, so custom code is managed, not edited in place.
Governed extensibility

Custom Code That Stays Inside the Guardrails

The point of an in-platform AppStore is that extension does not cost control. A custom node is subject to the same governance as any other action Symphony runs.

The engine executes, not the model

A custom node runs through Symphony under defined policy, so extension code executes inside the governed engine rather than as a loose script on a server.

Runs under real identity

A published node carries a real identity mapped to each system's native authorisations when it runs, never a shared or embedded credential.

Credentials from the vault

Custom nodes draw secrets from the vault at runtime like any prebuilt node, so extension code never holds a password or key in its source.

Roles and approvals apply

The same roles, separation of duties, and approval configuration govern custom nodes, so who can publish and run them is controlled.

Versioned in a repository

Repo configuration keeps custom code under GitHub or Bitbucket control, so extensions are reviewed and versioned rather than edited in place.

Audited like any action

Every custom-node execution is logged with identity and outcome, so an extension is as provable to an auditor as a prebuilt step.

The shift

From Shadow Scripts to Governed Extensions

The difference is not fewer custom needs, it is a governed home for them, so the one action the library lacks is built once, shared, and run under the same control as the core.

Today

Scripts scattered outside the platform

  • Bespoke logic runs as scripts off-platform
  • Extensions carry no identity, approval, or audit
  • Each team rewrites the same custom step
  • Credentials sit inside script source
  • Custom code is edited in place, unversioned
  • The more teams extend, the less stays controlled
With Symphony

Built once, shared, governed

  • Custom nodes published into Flexi Flow
  • Extensions run under identity, policy, and audit
  • A node built once is reused across teams
  • Custom nodes draw credentials from the vault
  • Code stays versioned in GitHub or Bitbucket
  • Extending the platform keeps it governed
One governed engine

AppStore Extends the Same Governed Engine

A custom node runs on the same engine as every prebuilt action, applying intelligence in three governed modes, so extension gets exactly as much autonomy as the risk allows, and no more.

01 · Rules

Rule-based execution

A custom node runs deterministically inside a Template under fixed policy, so bespoke logic executes as a governed step, not a loose script.

02 · Conversational

Maestro co-pilot

A workflow built from custom nodes can route a decision to Microsoft Teams, so a person approves where judgment is needed.

03 · Ambient

isAI autonomy

Custom nodes become building blocks that ambient isAI can compose into autonomous, governed responses to known patterns.

Prebuilt, custom, connected

Extend Across Every System and Repository

Extension spans the systems an operation touches and the repositories the code lives in, so Symphony AppStore connects both through standard interfaces, with no change to the core.

Custom nodes
PythonSQLShellAPICustom logic
Node categories
CloudSAP and enterpriseOSDevOpsSecurityITSM
Repositories
GitHubBitbucketVersion controlAccess control
Composition
Flexi FlowTemplatesJobsFastrack catalogue

400+ prebuilt nodes plus custom nodes, all composed in Flexi Flow and governed by Symphony security and governance. AppStore extends the same engine that runs the platform, see the orchestration engine, and its DevOps integrations pair with ITSM automation.

Why it holds up

Extensibility With Governance, Not a Loose Script

Custom nodes
Python and SQL nodes published straight into Flexi Flow
Extend
Reusable
Apps, scripts, and templates shared, not rewritten
Repository
Versioned
GitHub and Bitbucket connected through repo configuration
Control
Governed
Custom nodes run under identity, vault, and audit
Safe
4.7 / 5
Rated by enterprise reviewers on Gartner Peer Insights
Verified

Frequently Asked Questions

Refer to this section for answers to frequently asked questions related to Symphony AppStore.

What is Symphony AppStore?

Symphony AppStore is the platform's extensibility layer: a repository of reusable automation apps, scripts, and templates, plus the ability to build custom nodes. A custom node such as a Python or SQL script appears directly in the Flexi Flow designer for reuse, and it runs under the same identity, policy, and audit as every prebuilt action.

Can we build our own custom automation?

Yes. Teams build custom nodes, for example Python or SQL scripts, and once created they appear in the Flexi Flow designer to be composed into Templates and Jobs like any prebuilt node. Existing templates can also be catalogued in Fastrack for one-input execution, so a proven automation becomes a reusable service.

Does custom code stay governed?

Yes. A custom node runs through Symphony under defined policy, carries a real identity, and draws credentials from the vault at runtime, so it never holds secrets in source or runs outside the platform. The same roles, approvals, and audit trail apply, so an extension is as controlled and provable as a prebuilt step.

How does it connect to our code repositories?

Repo Configuration connects repositories such as GitHub or Bitbucket by specifying connection details and access permissions, so custom code stays under version control where the team already manages it. Extensions are reviewed and versioned rather than edited in place on a server.

Do we still get value without writing any code?

Yes. AppStore starts from 400+ prebuilt nodes across cloud, SAP, OS, DevOps, security, ITSM, and data, so most operations are built with no custom code at all. Custom nodes cover the specific steps the prebuilt library does not, and both compose together in the same Flexi Flow designer.

See How Symphony AppStore Extends the Platform

The conversation is exploratory and shaped by the automation walked through during the session, from where the prebuilt library runs out today to how a custom node is built, published, and governed inside Flexi Flow.

Request a Demo
Join 60+ enterprises orchestrating at scale · 30-minute discovery session*