Omnafy

One gateway. Every agent. Full accountability.

The Omnafy Gateway is the control room for your agent workforce. It decides what agents can touch, watches everything they do, and proves it afterward.

What sits inside the gateway

Every capability an agent can reach is declared, scoped, and recorded. There is no side door.

One MCP gateway

Every tool from every connected system sits behind a single endpoint, with namespacing and per-identity visibility. An agent only sees what its scope allows.

Agent & workflow directory

Versioned, declarative definitions with a draft, approve, live lifecycle. Changes to agent behavior are reviewed like code.

Triggers

Schedules, inbound email and documents, and system events start runs automatically. Anything can also be run manually by an authorized person.

Approval queues

Consequential actions arrive with the evidence attached. Approve, correct, or decline; every decision is recorded and feeds the evaluations.

Run explorer

A full transcript of every run: each tool call, its inputs, outputs, outcome, and cost. When you ask why the agent did something, there is an answer.

Metering & reporting

Per-run cost accounting rolls up to monthly reports. You always know what your agent workforce costs and what it produced.

Agents that build agents

Describe a workflow in plain English; a builder agent drafts the definition for human approval. Created agents can never exceed their creator's permissions.

How a request travels

The same path applies whether the caller is an autonomous agent, a copilot, or a member of staff in an MCP client.

Authenticate

  • Every caller carries its own identity, never a shared account
  • Scopes are resolved per request, not per session
  • Tools outside the caller's scope are invisible, not just blocked

Authorize

  • Each tool carries a risk tier that sets its supervision level
  • T1 and above can require an approval before the call executes
  • Policy lives in one place, so it cannot drift between systems

Record

  • Inputs, outputs, outcome, and cost captured per call
  • Approvals recorded with the evidence the reviewer saw
  • Every record is attributable to a specific agent and run

Your data stays in your cloud.

The Omnafy control plane runs as a managed service. The execution plane, meaning the agents and every byte they process, runs inside your cloud boundary. If you handle PHI or other regulated data, it never leaves your account.