Agent-ready platform

A governed home for agents—wherever they run.

Build and operate agents inside Aevah—or let Claude, ChatGPT, and your existing enterprise agents call Aevah over MCP. Wherever an agent runs, it receives the same governed business context and never exceeds the initiating person's authority.

Two ways into one governed capability layerAgents can live in Aevah or call it from elsewhere
Agents in AevahA governed home

Build, operate, supervise, and version enterprise agents.

Agents elsewhereA governed connection

Claude, ChatGPT, and customer agents call Aevah over MCP.

Same identity. Same rules.
  1. 01Identity
  2. 02Permission
  3. 03Operating DNA
  4. 04Tool or action
  5. 05Versioned audit

An agent never receives more authority than the person who initiated it.

A home and a connection

Your agents can live here—or work with Aevah from anywhere.

Aevah gives enterprise agents a governed environment in which to operate, while also publishing versioned, schema-bound, permission-scoped tools that external agents can discover and call. Whether an agent lives in Aevah or reaches Aevah over MCP, it uses the same business meaning, permissions, classifications, version history, and audit rules. There is no privileged path.

Path 1

Agents in Aevah

Build, operate, supervise, version, and audit enterprise agents inside a governed home connected to your Operating DNA.

Path 2

Agents outside Aevah

Claude, ChatGPT, customer-built agents, and other enterprise agents can discover and call Aevah capabilities over MCP without moving into Aevah.

A home for every agent

Bring the agents you have. Govern them together.

Aevah agents operate inside the same governed environment that external, customer-built, and partner agents can use through versioned, permission-scoped MCP tools.

Aevah agent environment housing agent identity, governed context, and versioned tools, with Aevah agents inside and customer, partner, and external agents connecting through MCPOpen full resolution
One governed agent environment. External access passes through the same identity, authority, policy, and evidence controls.

Agent-navigable website

Structured for agents browsing on your behalf.

The site itself is agent-navigable. Aevah's documentation and capability information are exposed as WebMCP tools, so an agent browsing on your behalf can search the documentation, retrieve capability and security detail, and prepare a demo request for you to review — without scraping pages or guessing at structure. The Aevah application exposes the same kind of surface: an agent working alongside a person can search, inspect and propose, while anything consequential stays a human decision.

Review the Aevah MCP surface →

MCP Apps

Human decisions return a usable review surface.

When an agent reaches a decision only a person should make, Aevah hands back a usable interface rather than a wall of JSON. An agent proposing a merge returns a review surface showing the candidate records side by side, which attribute value wins and why, and approve or reject controls — rendered directly in the agent's own environment. The person decides on real evidence, in context, and the decision is captured in the audit trail. The interface is a rendering surface, never an authority: every approval is reauthorized against the approver's permissions before anything changes, and the surface never receives values the viewer is not cleared to see. Review surfaces cover merge and match review, survivorship explanation, data quality triage, mapping suggestion review, and generic proposal approval.

  1. 01Propose
  2. 02Review
  3. 03Approve
  4. 04Audit

Governed action

Three classes of tool.

Class 1

Read

Returns data and changes nothing. Executes directly under the caller's permissions.

Class 2

Propose

Produces a change proposal for a human to approve. Nothing changes until a person with the required authority approves it. Most agent-initiated change belongs here.

Class 3

Execute

Performs a governed change under explicit prior confirmation, reauthorized at the moment it runs. Confirmation is single-use, bound to the specific operation, and cannot be reused or broadened.

An agent cannot promote itself between classes.

Tool families

The enterprise capability surface.

Catalog discovery

Returns the tools, versions, classifications, and permissions available to the caller.

Data navigation

Returns authorized entities, relationships, definitions, and business context.

Quality intelligence

Returns quality standards, failed checks, affected records, and supporting evidence.

Matching and survivorship insight

Returns candidate records, comparisons, proposed outcomes, and the evidence available for review.

Governance memory

Returns definitions, policies, ownership, decisions, approvals, and audit history.

Publication and activation

Returns publication status, eligible targets, activation outcomes, and correlation identifiers.

Operations

Returns operation status, progress, cancellation state, and per-record outcomes.

Identity and authority

Agents inherit your rules, not new ones.

Every tool call carries the identity of whoever triggered it and can never exceed that identity's permissions. Sensitivity classification is honored on the way out, so a tool returns only what its caller is cleared to see. Actions that change data are recorded as new versions rather than overwrites, are safe to retry without duplicating work, and leave a complete audit trail — who acted, which tool, which version, what happened.

Review identity, authorization, isolation, and audit →

Stable contracts

Contracts don't move underneath you.

Tools are versioned. A breaking change publishes a new version; the existing one is never altered. Agents built against a supported version keep working exactly as before, and deprecation is signalled in advance with a replacement pointer.

Delegated authority

Every agent has an accountable path.

The agent receives the triggering person’s identity and a bounded tool set, passes execution-time policy checks, proposes the intended action, and stops for human confirmation where the work requires it.

A person delegates identity to an agent whose path passes through permitted tools, a policy check, proposal, human confirmation when required, action, and returning audit evidenceOpen full resolution
Conceptual execution path. An agent never receives more authority than the person and context behind the request.

A governed change, end to end

A governed change follows one visible path.

  1. 01Agent proposes
  2. 02Steward reviews in Aevah
  3. 03Approved and executed under confirmation
  4. 04New version and audit record

This arc is the same whether the change originates with a person or an agent.

Complete history

Nothing is ever overwritten.

Governed changes are immutable and cumulative. Every change creates a new version; prior versions stay retrievable and comparable. Reverting moves forward — a prior version is reinstated by superseding the current one, so the record of what changed and what was undone survives intact. There is no destructive rollback, by design.

A practical next step

Request the security and integration detail pack.

Full control and integration detail is provided during RFP and pilot.

Request the detail pack