Governed agent platform for regulated industries

Govern every agent. Record every run.

Build or connect agents, give each one an identity and decide authority just in time. Difinity enforces your policies, protects sensitive data and records an accountable trail across every governed run.

Platform architecture

Control, reasoning and execution stay separated.

ControlBoundaryEvidence
Applications and agents
Custom applicationsExisting agentsAgents built on DifinityAgentic workflows
02

Flow, the agent loop

Runtime

Flow reasons with approved models while data protections and runtime policies govern the request, response and run state. It holds no state of its own, and it can propose a tool call but cannot execute one.

Connected to runtimeApproved model providersProtected requests and responses
01Receive task and context
02Reason and plan
03Apply data protections
04Enforce runtime policies
05Use approved models
06Propose tool calls
03

Not reachable from the internet

The tool gateway

Every action leaves through the gateway. It protects tool-call data, decides authority just in time, and holds the credential it acts with. The agent never holds one, and no customer calls the gateway directly.

01Receive proposed tool call
02Protect tool-call data
03Decide authority just in time
04Allow, block or escalate
05Act with the credential it holds
Enterprise environment
Business systemsTools and APIsData servicesHuman review
Run trailOne accountable record
01Identity02Intent and context03Policy decision04Data controls05Action06Outcome

Segregated responsibilities

The agent never grants its own authority.

Hub and the Platform API hold the configuration and the record. Flow is the runtime that reasons through approved models while enforcing data and runtime policies. The tool gateway decides authority just in time and is the only part that acts.

Configure / 01

Hub and the Platform API

Define who is acting, why and within which boundary.

In Hub, register agents, assign ownership and configure purpose, risk, connections, data rules and organisational policies. The Platform API holds what Hub writes, so security, technology, risk and compliance teams can see the operating boundary before the agent runs.

Run / 02

Flow

Reason, plan and request the next action.

Flow owns the agent loop and the model connections. It reads what a run needs from the Platform API when the run starts, applies data protections and runtime policy to model requests and responses, then proposes a tool call with its arguments, the stated task and the reason for it.

Act / 03

The tool gateway

Decide authority just in time and act only where allowed.

The gateway handles tool calls only. It protects the data carried in the call, evaluates action authority just in time, and uses the credential it holds only after an allow decision. Other requests are blocked or escalated for review. It is unreachable from the internet.

The complete operating path

From a useful agent to an accountable enterprise capability.

01

Build and connect

Build agents here, or govern the ones you already have.

Use the agent builder or connect an existing agent. Give it the tools the job requires. The agent holds no credentials and cannot reach a system itself, so every action it wants to take is proposed to the tool gateway, which decides, holds the credential and acts.

Read the Agent identity and ownership guide
  • Agent builder
  • Existing agents
  • No standing credentials
  • Bound connections
02

Identify and scope

Every agent acts as a known, accountable identity.

Assign an identity, owner and purpose to each agent, then bind the agent version to its connections, tools and policies. The agent itself never receives a credential. The tool gateway holds it, and selects the connector or person credential for the verified caller at the moment it acts.

Read the Agent permissions and access control guide
  • Agent identity
  • Named ownership
  • Purpose and risk
  • Bound to a version
03

Govern every action

Decide authority at the moment an agent needs it.

When the runtime proposes a tool or business-system action, the tool gateway reads the agent and its version, the verified caller, the tool and the real arguments, the remit and purpose it is acting under, the rule its author wrote for that tool, and what the deterministic checks already confirmed. The action is allowed, blocked or escalated without giving the agent standing access.

Read the Runtime policy enforcement guide
  • Just-in-time authority
  • Runtime policies
  • Tool permissions
  • Block and escalate
04

Protect data and model use

Keep sensitive data inside the boundaries you set.

The runtime applies PII redaction, data-handling rules, policy enforcement and model controls as the run unfolds. Govern what reaches a model, which providers may be used and how protected data is handled.

Read the PII redaction for AI agents guide
  • PII redaction
  • Data policies
  • Model controls
  • Provider rules
05

Record every run

Turn execution into evidence your enterprise can use.

Keep identity, intent, policy decisions, data handling, actions and outcomes in one inspectable record for operations, security, audit and compliance review.

Read the AI agent audit trails guide
  • Run trail
  • Decision history
  • Run evidence
  • Records for compliance review

Inside one governed run

Every decision stays connected to the action.

The control is useful during execution. The evidence is useful afterward. Both are part of the same run.

  1. 01

    Identify

    Resolve the agent, its owner, the person it acts for and the governed purpose.

  2. 02

    Understand

    Inspect the requested action, intent, context and inputs.

  3. 03

    Protect

    Apply PII redaction and configured data-handling rules.

  4. 04

    Decide

    Grant just-in-time authority, block the action or require review.

  5. 05

    Act

    Execute only the permitted action, with the gateway holding the credential.

  6. 06

    Record

    Link the decision, action and outcome in the run evidence.

Whole-run governance

Govern the whole run, not just the prompt.

A model call is only one step in an agent run. The agent may also read a customer record, update a claim, issue a payment or create a case. Difinity connects those decisions and actions to one identity, one policy context and one run trail without replacing your systems of record.

IdentityWho is acting and for what purpose
ActionWhich tool or system change is requested
EvidenceWhy it was allowed, blocked or escalated

Adopt with evidence

Start with one workflow. Expand across regulated operations.

01

Choose a real workflow and name the outcome.

02

Map its data, systems, actions and accountable owner.

03

Test policy outcomes, blocks and escalations on a bounded workflow before you widen it.

04

Use run evidence to expand scope with confidence.

Platform questions

What enterprise teams need to know.

Compare platform approaches

Your first governed run

Bring one agent workflow. We'll map the path to governed production.