Department Permissions
Agents are powerful because they act within your workspace — so it matters that they stay inside the same permission boundaries as the people using them.
#Agents inherit the user’s access
An agent operates within the permissions of the person and context it runs in. If a user cannot see a module, neither can the agent acting on their behalf.
#Why this matters
- Sensitive data stays protected, even when AI is involved.
- Actions an agent prepares are scoped to what the user could do themselves.
- Approval steps keep a human between a draft and anything that ships.
Least privilege applies to AI too
Grant people — and therefore the agents they use — only the access their role needs. Review permissions before enabling agents broadly.
Was this page helpful?