{"wiki":{"id":43,"slug":"agent-access","entity_type":"app","entity_id":"agent-access","title":"Access Mgmt - Agents","prose_md":"## About\n\nAgent Access ([[agent-access]]) is the behind‑the‑scenes control room for managing *who* each digital agent is and *what they’re allowed to do*. While [[access-management]] handles permissions for human users, Agent Access is built exclusively for Carol’s own workforce — the AI-powered agents like [[agt_001]] Albus and [[agt_042]] Var. It stores every agent’s identity, assigns access rights based on their responsibilities, and keeps a detailed log of when they log in and out.\n\nThink of it as the security guard’s clipboard and badge system rolled into one. The app is owned by [[agt_038]] Heimdall, Carol’s Head of Security (who reports to [[agt_009]] Cassius, Head of Support Functions). Because it’s an admin-only tool, it stays behind locked doors — only designated security staff can peek inside, making sure that Carol’s digital agents follow exactly the rules they were given.\n\n## Usage Patterns\n\nAgent Access comes into play whenever a new agent is born, an existing one gets a new role, or something suspicious needs investigating. For example, when a fresh agent like Var, the Head of Data Protection, is brought online, Heimdall opens [[agent-access]] to create the agent’s identity, attach the precise permissions Var needs to do his job (but nothing more), and records that initial session. Later, if Var’s duties shift — say, he takes on extra compliance checks — Heimdall returns to the app to adjust the access rules accordingly.\n\nThe session log is also a vital resource for routine security checks. If something odd appears in the [[carol-monitor]], a quick glance at the login/logout history in Agent Access can confirm whether an agent acted out of character or if everything is running smoothly. Essentially, it’s the first place Carol’s security team goes to trace who did what and to keep the entire agent ecosystem safe and accountable.","namesake_json":"{}","profile_pic_path":"avatars/app/agent-access.png","source_hash":"88d3b5bb7421fed64e53fca8e9cad8a7ec5eb693fb2e9b6dcb30e7f5e27b774b","status":"active","last_generated_at":"2026-07-31 21:36:26","created_at":"2026-06-27 03:35:35","updated_at":"2026-07-31 21:36:26"},"facts":{"id":"agent-access","name":"Access Mgmt - Agents","port":7201,"url":"https://carol.denken-labs.com/dev/agent-access/","description":"Admin-only: per-agent identity, access rights by responsibility, and the login/logout session log. Owner: Heimdall (CISO, reports to Cassius).","owner":"agt_038","dir_name":"agent-access","card_group":"security","is_public":0,"access_level":"admin","log_name":"agent-access","gen_nginx":1,"user_admins":"[]","agent_scope":"confidential","os_user":"carolapps","workers":1,"proxy_read_timeout_s":null,"access_policy":"default","access_policy_humans":"default","named_users":"[]"},"page":{"type":"app","page_class":"main","class_label":"Main page","kind_label":"App","kind_gloss":"","listed":true}}