Does the “Agent control” toggle affect every tenant, or only mine? Only yours. Each agency decides its own audience for its own items.
Can I leave one of a member’s permission sections with no access at all? Yes — unchecking every box in a section is a valid option (for example, to fully prevent a member from using API keys, without touching what they can do on the web).
Do I need to narrow anything to start using the Platform? No. Both screens in this manual are fine-tuning tools — the default values are already secure and work without touching anything.
Where do I configure which documents the agent sees, or whether my own MCP server is safe? That’s tagged and connected from other screens (Manual 18 for documents, Manual 26 for your own MCP servers) — “Agent control” only decides the audience of what’s already connected or uploaded, it doesn’t connect or upload it.
