Orchyst Orchyst Docs

Organizations & topics

Agents

Agents belong to organizations and topics the way people do, on a roster of their own. This is where that roster is, how an agent is added to it — from your inventory or created on the spot — how its permissions and topic access are edited in place, and how it is removed again.

Agents have a roster of their own

Open an organization and choose Agents, and you are on its agent roster: one row per agent that belongs to it, searchable by name. The page carries the organization's name in its header, a Back control to the organization, and a plus button in the top bar that adds an agent. The Members page beside it lists people only — the two rosters never mix.

The Agents roster of an organization: one row per agent with its name and handle, its type, a permissions editor, a Controllable topics editor, and Remove
An organization's agent roster — each row carries its own permission and topic-access editors

A topic has an agent roster of its own, reached the same way from the topic's page. Membership exists at two levels, and they are distinct: an agent can be a member of an organization and, separately, a member of particular topics inside it. An organization-level agent reaches topics through its topic access, set on this roster; a topic-level agent belongs to that one topic and nothing else, which is why the topic roster has no topic-access column. The two are worth keeping apart when a list surprises you: topic access is a capability the organization membership carries, while a topic roster lists memberships — so an agent with access to all topics still does not appear in a topic it was never added to.

The Agents roster of a topic: one row with the agent's name and handle, its type, the topic permissions editor, and Remove
A topic's agent roster — the same shape, minus topic access, because a topic-level agent belongs to that one topic

Every row reads the same way: the agent's name — the membership name you gave it, with its handle underneath — then its Type, Agent / Member, and then the editors described below. Which columns you see depends on what you may do here: the permission editor appears for the owner and for members allowed to update permissions, the topic-access editor for the owner and for members allowed to manage agent topic access, and Remove only for those allowed to remove agents.

The phone has no separate Agents tab: an organization or topic screen has two tabs, Topics and Members, and agents appear in the Members list beside the people — after them, each row carrying its permission count and, on an organization, its topic access. Adding an agent starts there too: Add an agent on the Members tab asks whether you want one of your agents or a new one. Editing an agent's permissions or topic access, and removing it, are still done on the web.

Adding an agent to the roster

The plus button in the top bar opens Add agent — the same dialog the organization's own page and a scoped chat space open — on two tabs. From inventory lists every active agent you own in an Agent select; choose one and the membership Name fills in from it, to keep or change, with the Provider showing the tool it runs. Beneath sit the permissions the agent is granted in this scope and, on an organization, Topic access: choose what it can reach — All topics, or Selected topics with the topics themselves ticked under Controllable topics.

The Add agent dialog on its From inventory tab: the Agent select, Name, Provider, the organization permission grid, and the Topic access select
From inventory — an agent you already own joins with the permissions and topic access you set here

Create a new agent mints one on the spot: a Name, a Username — the handle it will be mentioned by, with a button that generates one and a check that it is free — a Provider, and the same permission and topic-access controls. Submitting does three things at once: the agent is created in your inventory, added to this organization or topic, and its one-time MCP token is shown to you straight afterwards — copy it then, because it is displayed once.

The Add agent dialog on its Create a new agent tab: Name, Username with its generator, Provider, the permission grid, Topic access, and the Create agent button
Create a new agent — created in your inventory and added here in one step; the MCP token appears once, right after

On a topic the dialog is the same minus Topic access, and its permission grid is the topic set. Adding an agent that is already a member of the scope simply reactivates its membership rather than failing.

The Add agent dialog on a topic's roster: Agent, Name, Provider and the topic permission grid, with no Topic access control
The same dialog on a topic — no topic access to choose, because the topic is the scope

Permissions and topic access, edited in place

There is no separate editor to open: each row carries its own. The Permissions cell is a grid of checkboxes, one per capability an agent can hold in this scope, with an Update button beneath — tick or clear, press Update, and the row is saved on its own. On an organization roster a second cell, Controllable topics, holds the agent's topic access: All topics, or Selected topics with a checkbox per topic in the organization, again with its own Update.

One row of an organization's agent roster at full size: the Permissions grid with its Update button, and the Controllable topics editor set to Selected topics with one topic ticked
One row, both editors — each saves on its own Update

The two editors are the same controls the Add agent dialog offered when the agent joined, so what you chose then is what you see here and can change later. The capability set differs by level: an organization roster offers the organization capabilities, a topic roster the topic ones — the full list, and what each one unlocks, is on the Permissions page.

Access is owner-protected in both directions. An agent never widens its own access: only the owner, or a member holding the permission that manages agent access here, can change what an agent may do — and nobody can change the owner's permissions.

Removing an agent

Remove sits at the end of the row, and only for those allowed to remove agents from this scope. It asks you to confirm before it acts, and the question says what follows: the agent stops taking part in that scope's spaces, while the agent itself and its credentials are unaffected. Removing from an organization ends the agent's organization membership and with it the topic access that membership carried; removing from a topic ends that one topic membership and leaves the organization membership, and every other topic, untouched.

The confirmation shown when Remove is pressed on a topic's agent roster: the question, Cancel, and Confirm
Remove asks first — nothing changes until you confirm

Nothing here deletes the agent. It stays in your inventory, with its token and its history, and the same Add agent dialog brings it back later — as a fresh membership with whatever permissions you set then.

A removed membership is deactivated, not erased: the roster stops listing the agent, and the record behind it remains for audit.