Changelog
What's changed
Every version, every improvement, every lesson learned. Follows semantic versioning.
Full wizard redesign & new color palette
Complete wizard redesign with 7 sections, new warm color palette, extended persona set, 6-digit policy numbering, per-persona base protection matrix, and full App & Data Protection / ASR / Compliance sections.
New warm color palette (light: #A9907E/#F3DEBA/#ABC4AA/#675D50, dark: #2D2424/#5C3D2E/#B85C38/#E0C097)
7-section wizard: License → Personas → Base Protection → Identity Protection → App & Data Protection → Attack Surface Reduction → Compliance
Section-based progress navigation with visual step indicator
Multi-license selection with add-on support (MDCA, Purview, Workload Identities)
Per-persona base protection matrix: BYOD, Domain Joined, Hybrid Joined, Entra Joined, Compliant, HJ+EJ+BYOD/DJ
Entra Joined and HJ+EJ+BYOD/DJ automatically generate 2 policies with device filters
AzureSA and CorporateSA machine personas added
App & Data Protection section: MAM, Intune enrollment MFA, session controls, MDCA per persona
Attack Surface Reduction section: block unknown platforms (global or per persona), guest/SA app restrictions
Compliance section: Terms of Use per persona
Results view with persona filter, expand/collapse, groups & locations tab, upgrade advice tab
6-digit policy numbering: CA[persona##][type##][policy##]
Policy types renamed: 01=BaseProtection, 02=IdentityProtection, 03=AppDataProtection, 04=AttackSurfaceReduction, 05=Compliance
Per-policy exclusion groups (not global) following naming convention <policyname>-Exclusions
Persona names aligned with Claus Jespersen framework: Internal, External, Developer, Administrator, Guest, GuestAdministrator
Persona numbers: 00=Global, 01=Internal, 02=External, 03=Developer, 04=Administrator, 05=Guest, 06=GuestAdministrator, 07=Microsoft365SA, 08=AzureSA, 09=CorporateSA, 10=Agent, 11=WorkloadID
License data extended with hasPurview, hasMDCA, isAddOn flags and resolveCALevel() for multi-license combinations
Foundation & English UI
Full English UI, landing page, multi-page site structure, dark/light mode, adaptive base policies, risk policy configuration step.
Landing page with philosophy, feature overview and disclaimer
Framework explanation page with architecture, policy types, naming convention and ring deployment model
About page with project background, AI collaboration disclosure and privacy statement
Changelog page
Dark / light mode with system preference detection and manual toggle
Responsive navigation with mobile menu
Shared Layout component with SEO meta tags and favicon
Logo SVG designed for CA Framework Builder
Adaptive base policies: automatically adjusted to device join type and Intune status
Risk policy configuration step (Step 4) for P2+ licenses
Per-persona risk policy settings with Microsoft best-practice defaults
Full English UI across all wizard steps and output components
Microsoft-inspired design system with CSS custom properties
Initial release — Proof of Concept
First working version of the CA Framework Wizard.
Three-step wizard: License → Personas → Workplace maturity
Support for 15 CA-relevant licenses across 4 groups
All 8 personas from the Claus Jespersen framework
Textual output: Entra ID groups, Named Locations, CA policies per persona
License-driven upgrade advice
Docker + docker-compose deployment setup
Astro + React + Tailwind CSS stack
Coming up — v0.4.0
Next iteration focuses on output richness and automation.
Interactive visual policy map per persona
Policy editor: modify, delete, and add policies inline
Download: plain text export
Download: JSON export for Graph API automation
PowerShell / Bicep script generation
Custom persona support
Passwordless scenario support
Purview Adaptive Protection policy generation