Targets and access.
Agree which systems, repositories, accounts, and materials are in scope. Permissions should follow the task and be revocable.
Agentic security starts with the agent’s own permissions. These are the boundaries and review principles we’re designing around as the products develop.
We’re designing agents around a defined target, permitted actions, and reviewable evidence. The boundary should be understandable before the investigation starts.
Conceptual permission flow. Product-specific controls and approval mechanisms remain in development.
Agree which systems, repositories, accounts, and materials are in scope. Permissions should follow the task and be revocable.
Separate investigation from changes that affect systems or people. A proposed fix should remain a proposal until the appropriate owner approves it.
Make observations, sources, and unresolved assumptions visible. Teams need a way to challenge a finding and repeat the relevant check.
Define what data a workflow needs and how access, storage, retention, and deletion should work before connecting sensitive environments.
These details depend on the product and are still being defined. They belong in the conversation before an environment is connected.
The form prepares an email draft. It does not connect to your systems or upload files. Begin with a description of your use case.
The light or dark preference is stored locally. Text fonts load from Google Fonts; the custom logo is included directly in the page.
The models and examples explain product direction. They do not inspect your environment or represent results from a running security agent.
Tell us what your team needs. Help shape what comes next.