| ✅ | Public REST API v1 | BORD-84 |
| ✅ | Inbox MVP — dual-sidebar, conversation management | — |
| ✅ | Rich media sends (image, video, document, audio) | BORD-86 |
| ✅ | Interactive messages (buttons, lists) | BORD-87 |
| ✅ | Broadcast engine | BORD-85 |
| ✅ | Margaret AI assistant | BORD-121 – BORD-130 |
| ✅ | LLM provider management (OpenAI, Anthropic, OpenRouter, Ollama, vLLM) | — |
| ✅ | Multi-tenancy hardening — workspace isolation, RBAC, session revocation | BORD-149 – BORD-176 |
| ✅ | Security documentation (overview, multi-tenancy, auth, secrets, GDPR, compliance matrix) | — |
| ✅ | OpenAPI spec + Scalar UI at /spec | BORD-177 |
| ✅ | Zustand draft persistence for outbox | — |
| ✅ | Visual template builder — 3-pane builder, 7 editors, phone-frame preview, submit-to-Meta pipeline | BORD-182, BORD-184 |
| ✅ | Graphical journey editor — React Flow canvas, 9 node types, validation, publish pipeline | — |
| ✅ | Margaret agent execution (tool-use, multi-step) | BORD-140 – BORD-143 |
| ✅ | Auto-trigger agent — inbound-triggered AI drafts, accept/reject API, draft banner | BORD-192 |
| ✅ | Consent ledger — consent_events table, STOP/START keyword detection (en/it/pt/es), campaign opt-out gate, consent API endpoints | BORD-193 |
| ✅ | Command palette — ⌘K navigation, search, and actions | BORD-204 |
| ✅ | Asset storage — asset_files table, S3-compatible uploads, workspace-scoped | BORD-187 |
| ✅ | Account alerts — Meta account_alerts webhook handler, operator UI panel | BORD-189 |
| ✅ | Audit logs — workspace-scoped audit_logs table, writeAuditLog() | BORD-158 |
| ✅ | GDPR data retention — data_retention_days per workspace, retention_sweep job | BORD-165, BORD-167 |
| ✅ | API key generation — swb_-prefixed keys, hashed at rest | BORD-178 |
| ✅ | Guided wizard — first-run-to-first-message onboarding | BORD-194 |
| ✅ | Design system primitives — design tokens, motion utilities, Skeleton component | — |
| ✅ | Brand updates — transparent wordmark, black-background favicon | — |