Configure Security Policies for Agent Skills
- Unique Ambient Agent Security Group is generated for ambient agents.
- Security:Security Configurationdomain in the System functional area.
Workday evaluates security for:
- Delegate agents, by using the security access of the invoking user.
- Ambient agents, based on the agent's permissions. When you activate a skill, Agent System of Record (ASOR) generates a unique Ambient Agent Security Group (ASG). You must assign this ASG to the relevant domain or business process security policies to grant access to secured items, such as tools and APIs.
- Access theView Security for Agent Skillreport.
- From the related actions menu of eachSecurity Policy, select .
- Complete the task:OptionDescriptionDelegate AgentFrom theSecurity Groupsprompt, select the security groups that include the invoking users who require access.Ambient AgentFrom theSecurity Groupsprompt, select the Ambient Agent Security Group.
- Select theVieworModifycheck boxes to grant the security group access to securable items.
- If a tool in theView Security for Agent Skillreport requires Get/Put access, select theGetorPutcheck boxes to grant security groups access to integrations.
- Activate Pending Security Policy Changes