Identity and log in your tenant
Sign-in through your Entra ID, every approval in the log with the person who made it.
On a developer's laptop the engine starts in a minute. In a company with real data it waits for answers to five questions about data, permissions and the trail. The answer is a layer we add on top of the engine, without replacing it. You can send this page to your IT.
In the 2025 Stack Overflow survey, 14.1% of developers use AI agents daily at work. 81% of agent users have concerns about data security and privacy. 13.8% said IT or security in their company strictly limits access to AI tools.
In the Enterprise plan Anthropic adds single sign-on, automatic access removal when an employee leaves, audit logs and central settings for tool and MCP server permissions. That answers the question of who may run the agent.
We do not attack this tool. We use it and respect it. We write about the layer it does not provide, because that is not its job.
Sign-in through your Entra ID, every approval in the log with the person who made it.
Access to systems as a list of tools with a defined scope, read-only wherever the agent reads content from strangers.
Sending starts only after an employee approves. The approval is in the log.
Each agent in the environment has its own permission scope. Delegation to sub-agents with verification.
An agent performing tasks remotely at a workstation, with the same boundaries.
The same applies to Codex and other engines. The layer is independent of the engine.
Send your IT the security page. It answers the five questions with mechanisms.
Pick one process where the agent reads your data. Do not start with one where it sends something.
Book a demo. We show the boundaries on a running panel, with your IT in the meeting.