AI agent secure connect
Treat the AI agent like any other operator tool with access to cluster context.
Practices
- Least privilege — use accounts and organization roles that only need what they need.
- No secrets in prompts — do not paste connection files, passwords, tokens, or private keys into the chat.
- Prefer inspect first — ask for status and logs before any change on production.
- Human confirm — approve deletes, restores, and large scale changes yourself in the UI.
- Audit — keep an eye on who in the organization can open AI Mode.
When to use tickets instead
If the agent cannot see your cluster, or you need Xooshe staff to change platform-side settings, open a support ticket.