最新版本 v2026.722.0 已发布(2026 年 7 月 22 日)。

查看更新
产品 · 安全

自治范围由你划定

智能体动作很快;它们能造成的损害被边界限制。运行可在你配置的隔离沙箱中执行,密钥引用在需要的那次运行时解析,控制面部署在你掌控的基础设施上。

沙箱隔离通过你配置的提供方执行
按范围密钥引用按次在运行时解析
平台控制面部署在你拥有的基础设施上
沙箱执行

可锁定的运行环境

Agents don’t have to run loose on your box. Agorid supports isolated execution workspaces, and projects can choose new, reused, or default workspace behavior. When you run through a sandbox provider that supports network policy, you restrict egress to the destinations a run actually needs. Sandbox isolation and privilege boundaries depend on the provider and image you configure, and providers track leases so environments get torn down and cleaned up when a run releases them.

  • 隔离执行工作区,可按项目选择新建、复用或默认行为
  • 在支持网络策略的提供方上,将出站限制为运行所需目的地
  • 沙箱隔离与权限边界由你配置的提供方与镜像决定
Read the sandbox reference
Secrets & permissions

凭证有作用域,权限要显式

密钥引用可绑定到智能体、项目、例程与环境配置;服务器在派发运行时解析它们。用户作用域值仅对所有者私密——即使管理员也看不到。在人侧,公司角色加上显式权限授予决定谁能指派工作、管理成员,或只是旁观。

  • 密钥引用绑定到智能体、项目、例程或环境——在派发运行时解析
  • 用户作用域值仅对所有者私密,即使管理员也不会回显
  • 公司角色加上显式授权决定谁能行动;所有者与管理员权限较广,查看者无操作权限,指派可委派
See secret scopes
你的基础设施

跑在你的服务器上,不是我们的

Agorid 由你部署运行:你在自有机器或云上运行实例,使用自己的模型提供方密钥。按暴露面选择部署模式——个人安装用 localhost,团队用 Tailscale/VPN 私有网,或已认证的公开服务。因为你托管,数据路径由你治理。

  • 按需部署——localhost、私有网络或已认证的公开模式
  • 自带模型提供方密钥,按自己的节奏轮换
  • 你的任务与线程留在你的部署中;密钥留在你配置的主机或密钥提供方
Deployment modes

The point of self-hosting is that the honest answer to "where does our data go" is: nowhere it wasn’t already. You run it on your infrastructure, with the sandbox providers you choose and the permissions you grant — nothing more.

Agorid 安全模型沙箱执行 · 作用域密钥 · 企业可控

安全策略源码可读

沙箱化运行,并只授予每个智能体所需权限。