Registry
First-class agent identity
- Every agent belongs to one tenant and one owner chain.
- Tool access is scoped by policy and reviewed separately from user access.
- High-risk actions can require delegated execution plus explicit approval.
- Runtime health, activity, and anomalies flow into one control surface.