Your enterprise is how you set governance across your organization. It's the top-level container for everything. Workspaces, people, configuration, billing, observability, and the rules that make the agent behave like your best engineers.
Together, these settings let you federate with confidence. The agent respects your enterprise requirements regardless of who's building or their level of experience.
Plans, credits, pricing, and invoices
Capabilities, permissions, and default behavior
AI coworkers the agent can delegate to
Model selection and bring-your-own-model
Connect MCP servers to give the agent runtime capabilities
Standard patterns of execution, your ways of working
Guardrails for agent behavior at enterprise, workspace, and user levels
Encrypted credentials for tools and integrations
GitHub integration setup
Built-in and custom roles with granular permissions
Members, teams, and team-based access
Enterprise settings set the defaults. Every workspace in your enterprise inherits these settings automatically. Workspaces can then toggle settings on or off, or add their own project-specific configuration on top.
Think of it this way. Enterprise is what's true across the org. Workspaces are where you customize for a specific project.
| Role | Access |
|---|---|
| Owner | Full control over settings, members, billing, and all workspaces |
| Admin | Manage settings, members, and workspaces |
| Editor | Edit files and use the agent in assigned workspaces |
| Viewer | View files and conversations in assigned workspaces |
You can also create custom roles with granular permissions to match how your organization works. See Roles for details.