Let work run with clear stop points
A scheduled agent can have an end time, review points, and a way to revoke access instead of receiving permanent permission. We have not yet measured how much longer work can run.
Product 02 Control for tool-using AI agents
On a supported, connected host, AFA helps your team decide what an AI agent may do before it uses a tool. It can pause risky steps for human approval and keep a signed record of what happened and in what order.
AFA is designed to help teams run longer tasks, control spending, coordinate more agents, and review what happened afterward. Each agent can have a clear limit, stop point, and human owner. These are practical examples, not measured gains. We have not measured a capacity multiplier.
A scheduled agent can have an end time, review points, and a way to revoke access instead of receiving permanent permission. We have not yet measured how much longer work can run.
On a supported host, a rule can require human approval before paid model use, cloud provisioning, or a DNS change. Hosted metering is not live, and AFA has not measured token or cost savings.
AFA can show which child agent started under which parent while research, build, and review happen in parallel. Full per-child path and call-budget enforcement is still an open gate.
Signed summaries of calls and results can preserve the order of work across agents. They help with review, but they do not prove that an action was accurate, true, or wise.
When several agents work at once, AFA helps preserve who started each branch, what it was allowed to reach, and where a person must step in.
AFA wraps a task in a signed envelope: owner, purpose digest, scope, action class, time mode, and parent. As work branches, envelope changes can be compared. On a supported host, an explicit boundary crossing can pause or stop before the tool runs.
AFA surfaces structural drift. It does not infer intent from private reasoning, and broad limits still permit broad behavior.
sha256:7c1d...a8sha256:883e...19sha256:0ad4...72MCP connects AFA checks and records to compatible agent hosts. The hosted API will support teams working across machines after its storage, usage counting, notifications, and enforcement checks are ready.
Bring AFA action checks and signed records into a compatible agent host through a small, inspectable tool connection.
Integration surfaceTeam identity, shared rules, durable usage records, notifications, and review exports are still gated for launch.
Why this is coming laterSpecial cases. SDKs and portable .authority bundles support specific integrations and evidence handoffs. They are implementation artifacts, not separate primary product surfaces.
AFA signs the envelope and preserves event order. That helps expose changed records, expanded scope, and approval added after an action. For disputed work, the same record can support chronology and custody; it does not decide who owns the work.
Current foundation: SHA-256 digests and Ed25519 signatures. Integrity is not truth. Governance is not a sandbox.
Read the security and privacy modelHosted surface Coming soon
Identity, durable metering, notification delivery, and resource-side enforcement must clear release gates together. A dashboard ahead of those controls would be theater.