Skip to content
LogoLogo

Govern

Governance in Studio is not a single switch. It is five separate surfaces, each answering a different question.

PageAnswers
GuardrailsWhat must never go in or come out of an agent?
Audit logsWho changed what, and who was refused?
Audit tracesWhat exactly happened inside a run?
UsageHow much are we spending, and on what?
RBAC, teams and permissionsWho in the company can do which of the above?

The two-layer model

Studio checks access twice, and the two checks answer different questions.

Loading diagram...
LayerGranted byExample
Role (RBAC)An admin, in Settings → Roles"Members may create agents."
Object permission (sharing)Whoever admins that object"Priya is an Editor on the Support Triage agent."

Settings → Roles page next to an agent's Share dialog, showing the two layers