Features · Enterprise

Control over where agent memory lives

Encrypted memory storage with role-based access control and workspace isolation, for teams that need to know exactly who can read and write agent memory.

Encrypted memory storage

Data is encrypted at rest and in transit. API keys are scoped per workspace and per capability.

Fine-grained access control

Role-based permissions (Owner, Admin, Developer, Read-only) and scoped API keys down to individual tool families.

Revoke access instantly

Revoking one key or removing one team member never affects anyone else's access in the workspace.

Built for SOC2-aligned workflows

Architected around SOC2-style controls, including audit-friendly access logs and workspace isolation, for teams pursuing formal certification.

Roles

Four roles, clearly scoped

OwnerFull control, including billing and the ability to delete the workspace.
AdminManage members, API keys, and settings, without workspace deletion rights.
DeveloperRead and write memory, create API keys for their own use.
Read-onlyQuery memory without the ability to modify or delete anything.
FAQ

Common questions

No. Every workspace resolves to its own instance. Memory, branches, and object storage never cross tenant boundaries, at the infrastructure level, not just in application logic.

Need something more specific?

Dedicated isolated clusters, custom MCP gateway routing, and a named solutions engineer are available on the Enterprise plan. Talk to us about your data residency and compliance requirements.

Give your AI agents permanent memory today.

Deploy in under 2 minutes. Free tier included forever.

Launch Studio Free →