Agent operations
Agent operations covers Sniffopotobot and MCP-driven actions.
What to monitor
- Tool-call volume.
- Failed tool calls.
- Write actions.
- Scope errors.
- Rate-limit events.
- Suspicious prompts.
- Partner-data access.
Safe defaults
- Read access first.
- Write access only after explicit consent.
- Partner data only with consent.
- Every tool call should have an audit row.
- Commercial MCP keys need usage metering.
When to investigate
- A write action happens unexpectedly.
- A user reports wrong memory.
- The corpus returns low-confidence data as certain.
- A commercial key exceeds normal traffic.
- Billing state and MCP entitlement disagree.