15 published shapes
Which agent do you run?
Pick the shape closest to your deployment, read what its grant actually contains, then pick the level you want it at. Every number on this page is read from the published catalogue and none of it was written here.
By behaviour
Filtering on
Type to narrow the list. Esc clears it, Enter closes this. There is no field here and there is not one anywhere on this site: what you type goes nowhere and is read straight off the keyboard. On a phone, use the chips above — a keyboard drawn out of buttons to filter fifteen things is worse than the fifteen things.
15 policy shapes
Nothing is filtered by . The 23-behaviour vocabulary is published and every shape’s totals are published, but which behaviours make up a particular grant is not. The list below is unchanged rather than narrowed on a guess.
Coding agents
· 3Chat assistants
· 2File stores
· 2Services and scheduled jobs
· 2Browser extensions
· 1Desktop apps
· 1Google Workspace
· 1Microsoft 365
· 1Pipelines and runners
· 1Something not on this list?
An agent, a connector or a deployment nobody here has profiled. The grant is measured or read from the vendor's own pages first, and the vault is built from that rather than from a template.
The first two levels deliver a template and for a shape nobody has profiled there is not one, so this starts at the level where a person does the work. That is a fact about the product rather than a packaging decision.