Work mode: Accesses only assigned applications, sites, and context items added to projects
For additional details, visit Modes in Acquia AI and Getting started with Acquia AI
The agent does not view credential values
In Work mode, the agent operates through a dedicated scoped identity rather than user permission sets
The agent accesses only resources assigned by an administrator
The agent can access resources that specific users cannot reach directly, which enables users with Acquia AI access to interact with those resources through the agent
In Advisor mode, this access scope does not apply because the agent operates with user identity and takes no action
Acquia AI accesses external systems outside Acquia environments in three scenarios
Page governance checks
Acquia AI reads specified pages through Acquia Web Governance to audit publicly accessible internet pages
Connected sites and applications
Acquia AI retrieves logs from Acquia Cloud Platform for delegated diagnosis tasks
Slack review notifications
When Slack integration is configured, notifications send one-way messages
In this release, only a user with an administrator role can enable or disable connectors, and settings apply to the entire organization. Include this behavior in security reviews.
Acquia retains records of agent activity for internal operational purposes
Acquia AI processes data exclusively in the United States East region in this release
Acquia AI holds no formal compliance certifications in this release
Governance in Acquia AI relies on three core principles
Bounded capability set
The agent cannot exceed functionality permitted in this release
Scoped agent role
The agent holds a dedicated Agent Team role, separate from human user roles
Two-stage human approval
The agent proposes a plan and takes no action without approval
The following controls remain unavailable in this release
Per-user scoping of agent capabilities
Edits to Agent Team agent roles across products
Customer-visible activity records
Automatic reversals for approved changes
Member restrictions for enabling or disabling connectors
Review this section during security evaluations to define agent capability limits
Cloud Platform
Administrators configure exact permissions for the agent per environment
Source CMS
The agent holds the Agent Team role built specifically for agent operations rather than human assignment, which prevents permission inheritance from users
Acquia DAM
DAM administrators configure visibility scope directly inside Acquia DAM Admin Tools instead of Acquia AI
The agent holds permissions exclusively on applications and sites assigned to its team
If this content did not answer your questions, try searching or contacting our support team for further assistance.
If this content did not answer your questions, try searching or contacting our support team for further assistance.