Before a wider rollout
Establish access and ownership boundaries before a pilot becomes normal business infrastructure.
Build a defensible picture of which agents exist, who owns them, what they can reach, how credentials are exposed, where people approve actions, and which logging gaps make review difficult.
For Portland and Maine organizations that need a fixed-scope answer to “what agents do we have, what can they do, and what should we fix first?”
Establish access and ownership boundaries before a pilot becomes normal business infrastructure.
Identify shadow AI agent use and bring legitimate workflows into an accountable operating model.
Translate tools, service accounts, local files, cloud applications, and agent permissions into a reviewable map.
Agents or sub-agents without a business owner, technical owner, approved purpose, or retirement decision.
Read, write, shell, browser, API, or application access that exceeds the bounded business task.
Long-lived keys, inherited user sessions, broadly scoped tokens, or unclear credential rotation responsibility.
Sensitive sends, changes, transactions, deletions, deployments, or escalations that can proceed without human review.
Insufficient records to connect a request, tool call, command, approval, error, and resulting business action.
Unclear authority or procedure for pausing an agent, revoking credentials, and preserving evidence.
Confirm named agents, endpoints, owners, supported evidence, sensitive-data restrictions, and the questions leadership needs answered.
Reconcile leadership, IT, and user perspectives with read-only discovery or configuration evidence where supported and approved.
Compare actual access with the approved task, document approval points, and identify where credentials or logs weaken accountability.
Prioritize changes by risk, feasibility, owner, dependency, and the degree of human approval required.
We separate permissions by task, prefer scoped and revocable credentials, distinguish observation from action, and require people to approve consequential steps. Recommendations state where evidence is incomplete rather than assuming coverage.
A named sponsor, a list of in-scope agents and owners, access to relevant configuration or demonstrations, and staff who can explain the approved use case. Evidence access is agreed before review begins.
The baseline is designed around interviews, configuration review, and read-only discovery where supported. Configuration changes, hooks, enforcement, or active testing require separate approval.
You receive an agent inventory, ownership map, tool and permission matrix, credential and approval observations, logging-gap analysis, and a prioritized remediation plan with stated limitations.
Start with a bounded set of agents, evidence sources, and decisions. We will confirm fit and scope before reviewing sensitive material.