Deployment checklist
Define the boundary.
Before the agent acts.
A shared checklist for platform engineering, security, and operational owners. No email required.
Authority & ownership
- Identify the delegating principal, agent identity, and accountable operational owner.
- Specify permitted resources, actions, environments, and assignment expiry.
- Define who can approve, modify, and revoke authority.
- Verify that credentials cannot bypass the intended execution boundary.
Data & context
- Identify authoritative permissions, sensitivity labels, and resource criticality.
- Specify approved destinations for sensitive outputs.
- Define freshness limits and behavior for missing or conflicting context.
- Establish how trusted metadata follows data into the protected outbound action.
Execution & approval
- Identify every protected tool path and any alternate access routes.
- Bind approvals to exact targets, operations, and parameters.
- Define retry, replay, timeout, and disconnected behavior.
- Recheck policy and relevant context when an approved action executes.
Evidence & response
- Link identity, assignment, policy decision, and observed execution.
- Distinguish confirmed outcomes from requests and unknown results.
- Verify containment and record in-flight or downstream exposure.
- Re-run allowed and denied scenarios after relevant system changes.
Move forward with authority
Put autonomous AI to work. With control.
Connect with PrismWorks to bring agent authorization, action controls, and verifiable outcomes to your enterprise.