Guides
Governing agents. Written from the build.
Permissions, audit and access are where agent rollouts stall. These are the models we build on, written down so you can use them with or without us.
01 / 03
AI agent permissions that hold up.
Per-integration toggles fail the day an agent can both list invoices and refund them. Classify every tool by blast radius instead: read, write, destructive.
02 / 03Auditing what your agents did.
When someone asks who sent that email, "the agent" is not an answer. What an agent audit trail needs to record, and how approvals become evidence.
03 / 03Claude Code on company tools, safely.
The default is API keys pasted into local config files: full-scope, unlogged, and still valid after offboarding. The gateway pattern replaces them with one revocable endpoint.
Start with the platform or the operating problem.
Use Notara directly, or bring us the workflow that needs to be redesigned and built.