Answers for your security team
This page is written for information security professionals: where data is stored, who can see it, what an AI agent can and cannot do, and how to verify all of it.
Where the data is and who sees it
What an AI agent can and cannot do
An agent never gets more rights than the person it acts for. Every limit is set in configuration and enforced by the platform, not by the model.
Can
- Read data within the user's permissions
- Draft documents, letters and reports
- Create tasks and reminders
- Perform pre-approved actions
Cannot without human approval
- Change or delete data in systems of record
- Send documents outside the organization
- Execute payments or legally binding actions
- Expand its own permissions
Control mechanisms
Role-based model
Roles are inherited from Active Directory or LDAP. Object access is restricted down to rows and fields.
Full audit trail
Every query, answer, source and action, with timestamp and user. Exportable to your SIEM.
Human in the loop
Threshold rules on amount, document type or new counterparty route an action for sign-off.
Reference testing
A set of control questions runs before every agent update. A drop in quality blocks the release.
Input filtering
Incoming requests are checked for attempts to override instructions or reach other users' data.
NDA and obligations
A non-disclosure agreement before the diagnostic. Data-protection obligations in the main contract.
Vet us before work begins
We'll provide an architecture description and threat model, and complete your security questionnaire. An engineer can meet your security team before the contract is signed.