Skip to main content

AI agent secure connect

Treat the AI agent like any other operator tool with access to cluster context.

Practices

  • Least privilege — use accounts and organization roles that only need what they need.
  • No secrets in prompts — do not paste connection files, passwords, tokens, or private keys into the chat.
  • Prefer inspect first — ask for status and logs before any change on production.
  • Human confirm — approve deletes, restores, and large scale changes yourself in the UI.
  • Audit — keep an eye on who in the organization can open AI Mode.

When to use tickets instead

If the agent cannot see your cluster, or you need Xooshe staff to change platform-side settings, open a support ticket.