Brokered access for Claude Code, Cursor, and MCP agents. Scoped, approved, and time-boxed.
Wired into repos before security reviews them.
Long-lived OAuth and PATs stay in play.
Nobody can say what an agent touched, or why.
Quiet for routine work. Interrupts only when a request is actually risky.
No. We use paths, branches, and PR metadata — not full source.