Tool-Based Access Control

Powerful and flexible
Permissions for AI agents.

Enterprise-grade authorization for secure and scalable tool access management.

AI Agents
Sales Agent
Support Agent
Analytics Agent
Identity & Security
AgenticTrust
Authentication
Rate Limiting
Filtering
Traceability
MCP Instances
Internal Services
CRM, ERP, etc.
Cloud Services
GitHub, Stripe, etc.
Knowledge Base
Docs, FAQs, etc.

Granular

Fine-tuned access control with detailed tool permissions.

Connected

Sync tool permissions directly from your identity provider.

Secure

Enforce least-privilege access with agent-scoped tools.

Role-Based Tool Permissions

Assign users to agent roles with predefined tool access to enforce a clear chain of permissions based on function and trust.

Users

👩🏼‍💻

Alice (Developer)

Can assume 2 roles

🕵️‍♂️

Bob (Security)

Can assume 2 roles

👨‍🔧

Charlie (Support)

Can assume 1 role

Agent Roles

🛡️

Admin Agent

Full tool access & system control

📈

Analyst Agent

Data analysis & reporting tools

👁️

Monitor Agent

Read-only observation tools

Tools

database:query
files:write
files:read
security:audit
code:execute
api:external
system:admin

Sync roles from your Identity Provider

Automatically map user groups from your IdP to internal roles. Keep access control synchronized across all platforms.

Google logoGoogle Groups
Developers
Support
Admins

Permissions

NamePermission
Admin Access
tool:admin
Billing Write
billing:write
Tool Write
tool:write

Roles

NamePermissions
Developer
tool:writecode:execute
Support Agent
tool:read
Admin
tool:adminbilling:write

Configure tools by tenant and role

Each tenant gets their own isolated tool configuration. Define custom tools specific to their business needs and control access at the role level.

Plan: Enterprise
Seats: 250

Roles

Admin5 users

Full system access

5 tools enabled
Financial Analyst45 users

Data analysis and reporting

5 tools enabled
Auditor12 users

Compliance and audit access

3 tools enabled

Tool Access for Financial Analyst

Configure which tools this role can access. Changes apply immediately to all users with this role.

Standard Tools
File Read
File System
On
Web Search
External
On
Database Query
Data
On
Custom Tools for Acme Corp
Audit Logs
Custom
Off
Compliance Check
Custom
On
Risk Analysis
Custom
On

Complete Tenant Isolation

Each tenant's tool configuration is completely isolated. Custom tools created for one tenant are never visible or accessible to other tenants, ensuring data security and preventing configuration conflicts in your multi-tenant environment.

Your agents. Your rules.

Scale securely.

The only agent management platform that maps your existing identity provider to granular tool permissions. Built for enterprises running AI agents at scale.