Endram field guides
AI agent policy templates
Copyable starting policies for production actions, with rollout and evidence guidance.
GitHub merge approval policy
A production-ready starting policy for github ai agent approval, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →02 · ai agent deployment approvalProduction deployment approval policy
A production-ready starting policy for ai agent deployment approval, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →03 · ai agent refund approvalAgent refund threshold policy
A production-ready starting policy for ai agent refund approval, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →04 · ai agent database access policyAI agent database write policy
A production-ready starting policy for ai agent database access policy, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →05 · ai agent email approvalAI agent external email policy
A production-ready starting policy for ai agent email approval, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →06 · ai agent slack policyAI agent Slack announcement policy
A production-ready starting policy for ai agent slack policy, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →07 · mcp tool allowlistMCP tool allowlist policy
A production-ready starting policy for mcp tool allowlist, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →08 · ai agent kill switchAI agent emergency kill switch policy
A production-ready starting policy for ai agent kill switch, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →09 · verified ai agent identity policyVerified AI agent identity policy
A production-ready starting policy for verified ai agent identity policy, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →10 · ai agent delegation policyDelegated AI agent task policy
A production-ready starting policy for ai agent delegation policy, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →11 · task scoped credentials githubTask-scoped GitHub credential policy
A production-ready starting policy for task scoped credentials github, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →12 · one time access token ai agentOne-use AI agent grant policy
A production-ready starting policy for one time access token ai agent, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →13 · purpose bound access policyPurpose-bound AI agent access policy
A production-ready starting policy for purpose bound access policy, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →14 · expiring agent delegationExpiring AI agent delegation policy
A production-ready starting policy for expiring agent delegation, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →15 · mcp resource allowlistMCP resource allowlist policy
A production-ready starting policy for mcp resource allowlist, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →16 · ai agent least privilege policyAI agent least-privilege review policy
A production-ready starting policy for ai agent least privilege policy, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →17 · mcp serverMCP server security checklist
A production-ready starting policy for mcp server, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →18 · mcp server examplesMCP server examples with security policy
A production-ready starting policy for mcp server examples, including match conditions, approval behavior, evidence, and rollout checks.
Open guide →