Agents
Creating a new agent requires the organization-level app-creation permission (Builder role or higher), the same permission used to create apps.
Sharing
The agent’s owner or an Admin can grant access to:- Individuals - invite users by email.
- Groups - grant access to an entire team at once (see Groups).
Skills
Skills use the same three roles, so authorship can be separated from use:
Deleting a skill is blocked while it’s still attached to any agent - detach it everywhere first.
Workflows
A workflow that calls an agent runs as the person who last published the workflow, using their credentials for shared and per-user connectors. See Triggers for how each trigger type starts a run.Shared agents and identity
When an agent is shared and someone other than its author runs it, Major distinguishes two identities:- The author/deployer - the subject of RBAC checks and the source of shared credentials.
- The runner - the person who started the run, used for any per-user OAuth connectors.