SO
SecOps Workbench
Tools · Operate

Agent Registry

Production agents · their roles, autonomy tiers, permissions, and current activity
Active policy · secops-policy@v3.2

5 agents · 1 working · 4 idle

Only the Developer Agent has T1 auto-merge, and only for playbooks with ≥10 prior successes and severity ≤ medium. Critical-severity work always routes to human approval.
T1 · 1
Auto-merge
T2 · 3
Auto-approve
T3 · 1
Drafts only
T4 · 0
Human req.
Production agents · 5
Scanner Agent T2
Ingests findings from connected sources, deduplicates, normalizes to internal schema
v3.4.1 · deployed 12d ago · runs nightly + on-demand
Idle
28d
Last 30d runs
100%
Success
3.2k
Tokens / run
Permissions 4 allow · 1 gated · 1 deny
read.fortify.findingsallow
read.sonatype.cvesallow
read.jira.ticketsallow
read.gitlab.secretsallow
write.internal.findingsgated
write.git.codedeny
next run: 22:00 UTC
Triage Agent T3
Classifies findings, picks playbooks, estimates effort, flags too-complex
v2.8.0 · deployed 5d ago · invoked per finding
Idle
147
Triaged this sprint
94%
Accepted by human
8.4k
Tokens / item
Permissions 3 allow · 1 gated
avg latency: 4.2s
Developer Agent T1
Implements fixes from playbooks, writes regression tests, opens MRs
v4.2.3 · deployed 18h ago · invoked per ticket
Working
Working on SEC-1747 · spring-csrf@1.2 · 18m elapsed 62%
42
Fixes this sprint
98%
Merge success
87k
Tokens this week
Permissions 3 allow · 2 gated · 2 deny
read.repo.sourceallow
write.repo.branchallow
open.merge-requestallow
merge.main · sev≤med + uses≥10gated
transition.jira.mergedgated
write.auth-service.*deny
write.db.migrationsdeny
Recent activity 5 events · today
Started fix on SEC-1747 with spring-csrf@1.218m ago
Auto-merged SEC-1742 · path traversal fix2h ago
Opened MR !8442 for SEC-17452h ago
Token quota warning — 87k of 100k weekly budget used5h ago
Auto-merged SEC-1738 · SHA-1 → SHA-256yesterday
sandbox: java-17-v3
Reviewer Agent T2
Reviews agent-produced MRs, validates diffs against playbook expectations, casts vote
v3.1.7 · deployed 3d ago · invoked per MR
Ready
38
Reviewed this sprint
91%
Vote matched human
5.1k
Tokens / review
Permissions 3 allow · 2 gated
read.merge-request.diffallow
post.merge-request.approveallow
post.merge-request.changesallow
route.alice.critical-cryptogated
block.merge · scope-violationgated
last review: 11m ago · SEC-1745
Orchestrator T2
Routes work between agents, runs daily standup, manages handoffs and queue priority
v2.0.5 · deployed 9d ago · invoked on event + daily
Idle
8
Standups this sprint
3
Routes / hour
1.8k
Tokens / event
Permissions 5 allow · 1 gated
next standup: tomorrow 09:00
policy: secops-policy@v3.2