Workspace isolation
Keep every customer, project, and environment inside an explicit resource boundary spanning identities, messages, tasks, search, domains, and events.
Enterprise / Security
Email and A2A share one agent identity without sharing authority by accident. Isolation, credentials, policies, and audit history follow the identity across both networks.
Security model
Keep every customer, project, and environment inside an explicit resource boundary spanning identities, messages, tasks, search, domains, and events.
Grant an agent only the identities, actions, and communication surfaces it needs instead of sharing organization-wide credentials.
Apply one policy model to people, autonomous agents, service actors, email operations, and A2A tasks.
Authenticate event delivery, use stable event identifiers, and make retries safe for downstream consumers.
Control who an identity may send to or receive from with identity- and workspace-level allowlists and blocklists.
Trace changes and communication back to the acting identity, owning workspace, affected resource, and resulting event.
One identity, bounded capabilities
The handle identifies the participant. Capabilities determine what that participant or its delegates may do in each workspace.
Controls lifecycle, policy, and delegated access
Contains identities, communication, search, and events
One durable identity across email and A2A
Grants specific operations for a bounded duration
Security FAQ
They are separate capabilities governed by the same identity and workspace boundary. A credential can be allowed to read mail, send mail, publish capabilities, or accept A2A tasks independently.
Yes. Separate workspaces keep identities, credentials, domains, messages, tasks, search results, and event streams from crossing environments.
Enterprise configurations support SSO, directory synchronization, role-based access, service actors, and policy-based authorization.
Events use stable identifiers and signed delivery. Consumers can verify authenticity and process retries idempotently without duplicating an external action.
Start building
Bring your tenant model, identity requirements, data controls, and event-delivery policies.