Register and Configure Workday-Built Agents
You might need to take additional steps to enable this feature based on your organization's subscription service agreement. Your organization is either on the Main Service Agreement (MSA) or the Universal Main Service Agreement (UMSA). To determine your organization's subscription service agreement:
- Select your profile avatar on Workday Community.
- SelectProfile.
- On your profile page, select your organization's name, which is beneath your name and next to your job title.
- View yourSubscription Service Agreementvalue.
If the value is:
- UMSA, the feature is automatically available. Keep data contributions enabled to ensure full agent functionality. For more information on Machine Learning data contributions, see Concept: Workday AI for Universal Main Subscription Agreement Customers.
- MSA, your organization must opt in to UMSA and enable this feature through Innovation Services.
UMSA is required for non-production and production tenants for Workday-Built agents. UMSA is not required for non-production tenants for self-built agents.
For information about how using agents impacts your Flex Credits, see: Workday Flex Credits Community page.
Security: These domains in the Agent System of Record functional area:
- Agent Compliance
- Agent Management Hub
- Manage: Agents
- Reports: Agent Reporting
- Setup: Agents
Security:
Reports: AI Agent Security
domain in the System functional area.You can register, configure, activate, and deactivate Workday agents using the
Agent Management Hub
. You can edit previous configurations at any time.- Access theAgent Management Hubreport.
- Select theUnregistered Workday Agenttab.
- ClickRegisterthe agent you want to register.You can only register agents in the SKUs obtained by your organization.
- Select theConfirmcheck box, and then clickOKto complete the registration.Workday moves the agent to theAgent Registrytab.
- Select theAgent Registrytab and then click on the agent name to configure the agent.
- From the agent's profile view, clickConfigure Agent.
- In theStatuscolumn, make each relevant skill available by enabling the toggle slider.
- For each enabledSkill, populate theAvailable Toprompt with the security groups that you want to provide access to for that specific skill. The security groups added to theAvailable Toprompt for an agent establish the agent’s interaction policy.Workday evaluates both user access to the agent and the user access to the APIs the agent is executing as tools at runtime. Workday recommends that you evaluate alignment between the security groups in theAvailable Toprompt and the security groups that have permissions for the tools the agent might execute. See the Self-Service Agent FAQ on Workday Community for security troubleshooting information.
- ClickActivate.
Employees that have access to the security groups you specified for each skill and the domain or business process security policy associated with the APIs that make up each skill can use the agent. When you activate an agent, the Agent System User (ASU) for the agent also activates automatically.