STOINTELLIGENCE
Data-driven. Field-proven.

STO·PATH · The STO Management Platform  +  STO·CORE · The STO Management System

Plan the decade. Run the event. Keep what you learn.

STO·PATH is the software your shutdown, turnaround, and outage program runs on, from the ten-year plan down to the person who owns one deliverable this week. The work process is its spine. Around that spine it carries the plan’s economics, the governance forums and their decisions, the risk register, every open action, and the lessons that make the next event better. STO·CORE is the best-practice standard it deploys.

Own the standard. Run it in software.

Event boardIllustrative
2028 Unit 2 STO
Large T0 set · countdown live
LRPConceptDef.DetailPreExecPost

Levelized long-range plan · recorded gate decisions
Governed decisions · risk with a heartbeat
Evergreen lessons · append-only audit

The problem

The program is bigger than the event. Most software is not.

Sites run forty-day events on ten-year cycles with tools that see neither end: the long-range plan lives in a spreadsheet, the work process lives in a binder, the decisions live in minutes nobody reopens, and the lessons live in whoever happened to be there. Four failures hide in that gap.

A plan nobody can defend
Interval and budget calls made without the levelized math

The ten-year plan is a spreadsheet with dates in it. Nobody can say what a five-year cycle does to annual cost, where the inspection ceiling stops the stretch, or what the board approved and when.

A standard on a shelf
The work process lives in a document, not in the work

A binder and a countdown spreadsheet do not assign the activity, date it from T0, or hold a gate until the accountable person decides on the record. The process and the event drift apart.

Governance without a record
Decisions taken in a room and lost in the minutes

Steering meets, decides, and moves on. Six weeks later nobody can say what was agreed, who agreed it, or whether it was ever meant to be revisited, so the same argument runs twice and the risk register quietly ages out.

Lessons that evaporate
The register opens at closeout, when memory is already gone

Preparation runs one to two years; a lessons meeting at the end reconstructs it from fading memory. Actions get minuted, filed, and rediscovered as the same surprise next event.


Plan the decade · before any of this

The long-range plan, built as a model rather than a spreadsheet.

Every unit and event across every site on one timeline, and underneath it a real model: what the cycle costs per year in real terms, what a longer interval would cost once scope growth and reliability are priced in, and which constraint actually binds. Scenarios end in a recorded decision, not a new spreadsheet tab.

Every site and unit on one long-range timeline: the plan-to-plan preparation window, the execution window, and the events still on the drawing board.
Every site and unit on one long-range timeline: the plan-to-plan preparation window, the execution window, and the events still on the drawing board.Illustrative demo data
The levelized annual read: each event's cost spread over the run it buys, real terms, with the now and 10-year headline.
The levelized annual read: each event's cost spread over the run it buys, real terms, with the now and 10-year headline.Illustrative demo data
Interval economics: priced properly the curve turns, so there is an optimum, and the wall says where the inspection ceiling or catalyst life stops the stretch.
Interval economics: priced properly the curve turns, so there is an optimum, and the wall says where the inspection ceiling or catalyst life stops the stretch.Illustrative demo data

Fiscal-year cashflow, replacement-value and complexity-adjusted benchmarks, and a board report ride the same engine · a dedicated long-range planning one-pager covers this in depth


What it does

One system, from the countdown to the closeout.

It governs what happens, when, who owns it, and what gets approved, then carries the decisions, risks, actions, and lessons that grow around it. Detailed scope-level scheduling stays with your planners.

01

Run the event

The work process, deployed to a real event with a real team on it, and held to.

Own the standard

Your work process is a versioned template your company controls, not a vendor’s black box. Start from the STO·CORE master, import the process you already run, or build one, then edit every activity, role, gate, and date. No change request to alter your own standard.

Deploy to every event

A built-in complexity calculator recommends the tier, then the whole countdown calendarizes from your execution start date. A small event gets a compressed front end, a mega event the full runway. Each deployment is an editable copy the site team adjusts without touching the company standard.

Accountability, enforced

Every activity has a named owner. One with a key deliverable cannot be submitted without evidence, cannot close without the accountable person’s approval, and a gate closes only through a recorded decision. Nothing is silently changed; it all lands in an append-only audit trail.

Improve the standard

The Drift report shows exactly how a running event diverged from its template. When a change is worth keeping, promote it into a new version of the company standard in one step. One event’s experience becomes the next event’s starting point.

Report and notify

Roll up compliance by role, person, and phase with gate status and pending approvals, and export the whole board to Excel for the meeting. Event-driven email keeps owners and approvers moving without anyone chasing them.

02

Govern it

The three forums that actually steer an event, run as a system rather than a calendar invite.

Strategy, steering, and core team

Each forum is a recurring series with a question-form agenda and a context dashboard built from live data: what moved, what is escalated, what is owed. Every meeting opens on the same ritual. Approve the last minutes, walk their still-open actions, and revisit the decisions past their revisit-by date.

Minutes people trust

Record the room if you want to, disclosed and started by the facilitator, and the transcript drafts the minutes. Decisions, actions, and risks are proposed, never assumed: the facilitator accepts, edits, or dismisses each one. Approval freezes the minutes, turns proposed decisions into agreed ones, and sends them out.

A decision register that cannot rot

Every decision carries who agreed it, when, in which forum, and when it should be looked at again. Superseding one requires naming its replacement, so the register can never quietly contradict itself. Decisions due a revisit come back onto the agenda by themselves.

03

Manage what threatens it

An evergreen register with the heartbeat enforced, and contingency that comes off it.

Your matrix, your language

Scoring runs on your own risk matrix, uploaded in whatever form it exists today and read into the tool, including matrices that do not score a cell as a simple product. Risks are written as cause, uncertain event, and effect, and the coach helps shape a vague one rather than refusing to save it.

The heartbeat is the product

Every risk has one named owner and a review-by date keyed to its severity, tightened once the execution window opens. Mitigations are real actions in the same spine, not prose in a cell. A risk that reaches its date untreated forces an explicit, recorded acceptance rather than quietly aging out, and gates hold for a register pass.

Contingency off the register

Quantified risks size the event’s contingency two ways, both stated: expected value per AACE 44R-08, and a simulated band on the risk-driver method of AACE 57R-09, the practice GAO-16-89G describes. Remove-one analysis ranks which risk is buying the most contingency, so the number is arguable rather than asserted.

The decision register, the risk heartbeat, and register-driven contingency are covered in depth on the governance, decisions and risk one-pager.

04

Learn from it

The half of lessons learned that everybody skips: capture during, not after.

Thirty seconds, from anywhere

One box, on the activity you are standing on, typed or spoken. The event, phase, and category fill themselves in. Attributed by default, anonymous when it needs to be. A register opened at closeout is reconstruction; this one is a record.

It comes back where it was learned

A lesson resurfaces on the next event’s copy of the same work-process activity, in front of the person about to do that job. When a lesson echoes one from a previous event that was never actioned, the platform says so, which is the finding that actually changes behaviour.

Actions that land in the plan

One action spine for the whole organization: gate conditions, meeting commitments, lessons actions, preparation tasks. One named owner, never a committee. Re-dating after the first due date requires a recorded reason, verified is its own state, and the owner cannot verify their own action. A next-event action lands as a real activity in that event’s plan.


Run · the deployed event

From template to a dated, accountable countdown in one click.

The complexity calculator scores the event and recommends the tier. PATH copies your template, calendarizes every activity from your execution start, and opens the board: named owners, ready-to-start flags, out-of-sequence warnings. The site team owns its copy, and improvements promote back into the company standard. No vendor change requests.

A deployed event: the seven-phase countdown with live completion and the overdue read at a glance.
A deployed event: the seven-phase countdown with live completion and the overdue read at a glance.Illustrative demo data
Every activity dated from T0 with a named owner, live progress, and sort, filter, and evidence behind every key deliverable.
Every activity dated from T0 with a named owner, live progress, and sort, filter, and evidence behind every key deliverable.Illustrative demo data

The accountability rail

Owner
Start
Required
Evidence
Owner
Submit
Accountable
Approve
Recorded
Gate decision
An activity with a named key deliverable cannot be submitted without evidence, cannot close without the accountable person’s approval, and a gate closes only through a recorded Continue, Conditional, or Hold decision. Every step lands in an append‑only audit trail.

Learn · the evergreen loop

The lessons system that outlives the event.

Capture is attributed or anonymous, takes half a minute, and never waits for closeout: a gate cannot close until the phase’s lessons pass is confirmed. At closeout the register flows into the STO·LEARN workshop; what comes back is themes and owned actions. And the actions do not go to a binder: they land as activities in the next deployed event, resurface on the same activity that taught them, and systemic fixes promote into the standard itself.

The register and the loop: logged, workshopped, actioned, verified, in the plan, adopted. In-cycle capture is measured per event, so the discipline is visible, not aspirational.
The register and the loop: logged, workshopped, actioned, verified, in the plan, adopted. In-cycle capture is measured per event, so the discipline is visible, not aspirational.Illustrative demo data

Ask the platform

The standard, answering questions.

A standard nobody reads is a binder with a login. Every person on the event can ask the platform what a deliverable has to contain, why a gate exists, or what their own role owns this month, and get an answer grounded in two things only: your governing standard and your deployed plan.

It is the fastest way a new team member gets useful, and the reason your standard stops being a document people mean to read.

Where the boundary sits

  • It cites the standard. Every substantive answer names the governing document it came from, so the person can go and read it.
  • It reads your plan, not the template. Dates, owners, and sequence come from your deployed event, drift included. The master describes practice; your plan answers what is due here.
  • It coaches, it never decides. It will not approve, score, gate, or judge readiness. Asked whether something is good enough, it explains what the standard expects and points at the accountable approver by name.
  • It says when it does not know. If the standard and the plan do not cover the question, it says so and points at who can answer, rather than inventing a requirement.

Keeping it alive

One brief a week, not a notification habit.

A process only survives if people are reminded of it at the right frequency, and gets abandoned if they are reminded too often. Everyone gets one brief a week: what moved across the event, and what is theirs in the week ahead. Only the genuinely time-critical items, approvals waiting and anything overdue, interrupt the day.


The standard it runs on · STO·CORE

You own the standard, not a black box.

STO·CORE is the documented best-practice STO management system PATH deploys: a 43-document family from governance to closeout, companion working tools (scope challenge, probabilistic cost, contracting and packages, basis of schedule), and a 180-activity complexity-tiered work process, built on public-framework rigor and tailored to how your site actually works. The master ships in the tool; copy it, adapt it, and make it yours. Or import the process you already run and keep your house standard, now live and enforced.

01Governance 02Scope 03Planning 04Readiness 05Execution 06Startup 07Closeout
STO·CORE Standard

License the management system and its complexity-tiered work process and countdown, tailored to your facility’s units, nomenclature, and event sizes. A documented program your team can run, not a binder that sits on a shelf.

STO·CORE Adoption

A hands-on engagement to stand the system up and make it stick: deploy the work process, set the countdown and gates, assign accountability, and coach your people to run it without us.

At a glance

43
document management system + companion working tools, yours to tailor
180
activity master work process, complexity-tiered, ships in the tool
4
complexity tiers, Small to Mega, scored by the calculator
T0
every activity calendarized from your execution start date

Built on public frameworks (DCMA, GAO, AACE, PMI) · tailored to your facility, never a shrink-wrapped download


Why us

Process compliance and independent assurance, on one event record.

STO·PATH runs on the same event spine as our assurance reviews, so the state of the work process and an independent read of the plan sit on the same event, not in two disconnected systems. That is the seam no closed tool can offer.

On one record

The plan, the process, and the read on it

  • STO·PATH runs the long-range plan, the work process, the decisions, the risks, and the lessons.
  • STOAR reads readiness at each gate, independently.
  • STO·SAR works the execution schedule before baseline lock.
  • STO·SPR measures the outcome; STO·LEARN turns it into owned actions.
What that unlocks

The loop the incumbents cannot close

  • The decision made in a steering meeting, the risk it was about, the action it created, the activity that action landed on, and the lesson that came out the other side are one chain of records.
  • A gate’s process status sits beside its independent readiness score.
  • The levelized long-range plan spans every site in one governed view.
  • You own and edit the standard, so it never becomes a vendor’s black box.

What you get

A governed plan, accountable events, and a standard that improves.

In
Your standard +
your event history
Engine
Plan, deploy,
govern, learn
Out
Governed LRP +
accountable events

Named accountability on every activity, evidence-backed key deliverables, recorded gate decisions, a decision register with revisit dates, a risk register with a review heartbeat and register-driven contingency, one action spine, and an append-only audit trail. The levelized long-range plan with scenarios, a board-ready report, event and portfolio reporting, Excel export, the coach, and one weekly brief keep the whole program moving. Your team works in the STO·PATH client portal; we work beside you in the same system.

Deployable now, consultant-led. STO·CORE is delivered as a tailored engagement; STO·PATH runs it as the software you own.


What changes

The difference between a binder and a system.

Without STO·PATH + STO·CORE

  • ×A ten-year plan in a spreadsheet, defended from memory
  • ×Gates cleared on trust, deliverables closed with no evidence
  • ×Decisions taken in a room and lost in the minutes
  • ×A risk register that ages quietly, contingency nobody can defend
  • ×Lessons reconstructed at closeout, actions filed in a binder

With STO·PATH + STO·CORE

  • A levelized, scenario-tested long-range plan with a decision record
  • Evidence, accountable approvals, and recorded gate decisions on every event
  • A decision register with who agreed it and when it gets revisited
  • A review heartbeat that forces a recorded call, contingency sized off the register
  • Lessons captured in-cycle that land in the next event’s plan

Put your whole STO program in software you own.

Show us how you run turnarounds today. We will stand up your standard in STO·PATH, load your event history into the long-range plan, and walk your team through their first deployed event.