Are You in Control? Blue Storm Introduces the First Continuous Governance Layer for Mendix

February 16, 2026 – Blue Storm, the leading provider of Mendix governance solutions, today announced the release of AppControl v2026.1, introducing Lifecycle Audit Events and Compliance Policies. With this release, AppControl completes its core governance architecture, establishing a fully integrated, evidence-driven control layer across the Mendix lifecycle.

As Mendix applications continue to power business-critical processes, enterprises increasingly require more than visibility—they require provable control. Governance must be continuous, traceable, and enforceable across development, deployment, and runtime. With v2026.1, AppControl moves from policy-based validation toward structured, evidence-backed governance controls.

This release introduces a foundational capability: structured lifecycle audit events. Every relevant deployment, configuration change, approval, rollback, and revision update is now captured as an auditable event. These events serve as the evidence layer for a new category of policy checks: Compliance Policies.

From Policy Checks to Governance Controls

Traditional policy checks answer whether a specific condition is true. Compliance Policies go further: they evaluate whether governance processes are functioning as intended over time.

The first Compliance Policy introduced in v2026.1 is:

GOV_0001 – Change Management

This policy continuously evaluates whether change management controls are in place and operating effectively. By analyzing lifecycle audit events, it verifies traceability of deployments, linkage between releases and approvals, rollback registration, and—depending on selected coverage level—formal change review enforcement.

This marks a shift from static validation to continuous governance assurance.

Centralized Audit Visibility

To support this new evidence-driven model, AppControl introduces the Audit tab within Insights. This centralized view provides structured visibility into all audit events generated or collected by the platform.

Enterprises can now:

  • Trace deployments and revision changes across environments

  • Review approval and rollback activity

  • Investigate control failures

  • Export structured audit evidence for compliance reporting

Audit events and Compliance Policies together form the foundation of AppControl’s Control domain—completing the Develop, Deploy, Monitor, Control lifecycle architecture.

With the introduction of Lifecycle Audit Events and Compliance Policies, AppControl now delivers a fully integrated governance framework across the Mendix lifecycle:

  • Development standards and structural quality

  • Controlled and traceable releases

  • Operational monitoring and vulnerability insights

  • Continuous, evidence-based governance controls

This release represents a major milestone in AppControl’s evolution: governance is no longer a collection of checks, but an active control system.


New Release Cadence

Alongside v2026.1, Blue Storm is introducing a new release train model, with a regular cadence of 4–6 weeks. This enables faster iteration, more responsive feature delivery, and closer alignment with customer feedback—while maintaining enterprise-grade stability.


Release Highlights

  • Lifecycle Audit Events
    Structured audit events generated across deployments, configuration changes, approvals, rollbacks, and revisions.
  • Compliance Policies
    A new category of policies evaluating governance controls based on audit evidence.
  • GOV_0001 – Change Management
    Continuous validation of change traceability, approvals, rollback registration, and review enforcement.
  • Audit Tab in Insights
    Centralized, filterable, and exportable view of all audit events.
  • Enterprise-Scale Performance
    Component Insights optimized for environments with 1M+ components.
  • Governance Stability Improvements
    Multiple fixes across releases, policies, insights, and task handling to strengthen correctness and reliability.

About AppControl

AppControl is the enterprise governance solution for Mendix. Built for platform, governance, and DevOps teams, AppControl simplifies oversight, enforces compliance, and provides end-to-end visibility across the Mendix application lifecycle: Develop, Deploy, Monitor, and Control. Its real-time governance reports, active controls, and fine-grained access roles empower organizations to answer once and for all: “Are you in control?”

For more information, visit www.bluestorm.io/appcontrol.


About Blue Storm

Blue Storm specializes in governance and application management solutions for the Mendix platform, empowering enterprise teams to manage application portfolios with confidence, control, and compliance. Committed to customer success, Blue Storm delivers innovative tools designed to meet the evolving needs of large-scale Mendix environments.