One gateway. Every agent. Full accountability.
The Omnafy Gateway is the control room for your agent workforce. It decides what agents can touch, watches everything they do, and proves it afterward.
What sits inside the gateway
Every capability an agent can reach is declared, scoped, and recorded. There is no side door.
One MCP gateway
Every tool from every connected system sits behind a single endpoint, with namespacing and per-identity visibility. An agent only sees what its scope allows.
Agent & workflow directory
Versioned, declarative definitions with a draft, approve, live lifecycle. Changes to agent behavior are reviewed like code.
Triggers
Schedules, inbound email and documents, and system events start runs automatically. Anything can also be run manually by an authorized person.
Approval queues
Consequential actions arrive with the evidence attached. Approve, correct, or decline; every decision is recorded and feeds the evaluations.
Run explorer
A full transcript of every run: each tool call, its inputs, outputs, outcome, and cost. When you ask why the agent did something, there is an answer.
Metering & reporting
Per-run cost accounting rolls up to monthly reports. You always know what your agent workforce costs and what it produced.
Agents that build agents
Describe a workflow in plain English; a builder agent drafts the definition for human approval. Created agents can never exceed their creator's permissions.
How a request travels
The same path applies whether the caller is an autonomous agent, a copilot, or a member of staff in an MCP client.
Authenticate
- Every caller carries its own identity, never a shared account
- Scopes are resolved per request, not per session
- Tools outside the caller's scope are invisible, not just blocked
Authorize
- Each tool carries a risk tier that sets its supervision level
- T1 and above can require an approval before the call executes
- Policy lives in one place, so it cannot drift between systems
Record
- Inputs, outputs, outcome, and cost captured per call
- Approvals recorded with the evidence the reviewer saw
- Every record is attributable to a specific agent and run
Your data stays in your cloud.
The Omnafy control plane runs as a managed service. The execution plane, meaning the agents and every byte they process, runs inside your cloud boundary. If you handle PHI or other regulated data, it never leaves your account.