Skip to main content
Agentic Use is where you decide what your coding agents are allowed to do — which shell commands they may run and which MCP tools they may call. Policies in the sidebar expands to its groups; Agentic Use is the first. Opening /policies directly lands here too.

What’s on the page

Tab strip

Policy list

Environment Targets

Every host, database, cloud resource, secret name, container image, repository, branch, file path and other target your agents have touched. Each row carries the command family it came from, how many developers used it, when it was last seen, how many of those uses were high risk, and the total number of times it has been seen. You tag each one Low, Med or High sensitivity. From then on, commands against that target are scored in the band you named rather than the one Unbound would have guessed — your own knowledge of which database is production wins. Commands already classified keep the score they were given. Untagged paths fall back to defaults: /etc, /usr, /var, /boot, /sys, ~/.ssh, ~/.aws, ~/.gnupg and .env files read as High, and ~/.config, .github, Dockerfile and docker-compose* as Med. Filter by command family or by sensitivity (including Untagged, which is the working list), and search for a target by name.

Filters and controls

Search and filter the policy list by name, type and status. Group scoping is set per policy, drawn from Users → User Groups.

What you can do

A policy’s own page

Match panel

The policy types

Terminal Commands and MCP Actions are always in the picker. MCP Probe, MCP Identity Signals and Skills each appear only where your organization has that one turned on. A skill policy opens at /policies/skill-policies/[id]. That detail page is turned on separately from skill policies themselves; where it is not on, selecting a skill policy opens its edit form instead — and an Analytics Viewer, who cannot open that form, gets nothing. Probe policies are created from Create Policy → MCP Probe.

Ask AI

/policies/agentic-use/ask-ai drafts a policy from a plain-language description for you to review.

Messages you may see