Agent Auth implements auth.md, the open Agent Registration Protocol, so AI agents like ChatGPT, Claude, and Cursor can register and act on a teammate's behalf using short-lived, scoped, revocable tokens — without anyone ever sharing an API key.
Agent Auth implements auth.md, the open Agent Registration Protocol, so AI agents like ChatGPT, Claude, and Cursor can register and act on a teammate's behalf using short-lived, scoped, revocable tokens — without anyone ever sharing an API key.
Standardauth.md (WorkOS open protocol, OAuth-based)
MethodsAnonymous, email claim, ID-JAG
TokensShort-lived, scoped, revocable
ManageDeveloper platform > Agent auth
Turn it on per workspace in the developer platform under Agent auth; MyTabulon then publishes /auth.md and the OAuth discovery endpoints automatically.
Three registration methods: anonymous (claim later), email claim (the user confirms a 6-digit code on a secure page), and ID-JAG (a trusted agent provider attests the user's identity).
Agents receive a short-lived access token scoped to the same permissions as API keys (clients, invoices, AI responses, and more) — never your raw key.
You choose exactly which scopes an agent gets before and after a human confirms it, keeping access least-privilege by default.
Every agent registration and active token appears in the dashboard and can be revoked instantly.
Plan limits cap active registrations, concurrent tokens, token lifetime, and trusted ID-JAG providers; Free is opt-in while paid tiers are on by default.
Open Business Settings, complete the company profile, set the currency, upload the logo, confirm billing, then add clients, inventory, or leads depending on what the business sells.
The app checks the active workspace's effective subscription, subscription state, and usage caps before opening or changing protected records. Owner-created workspaces can inherit the owner's account plan from another billing-home workspace, while joined team workspaces use that company's owner plan. A 402 response usually means the effective plan is free, inactive, or has reached a limit for that feature. File Manager checks file count, storage, and per-file upload size: Free 50 MB, Plus 250 MB, Pro 2 GB, and Max 10 GB. AI Images checks image credits, daily and personal caps, model access, source limits, File Manager count, and storage. Maximo Cloud Computer checks computer minutes, daily/monthly caps, max run length, and concurrency. Gemini Live starts on Pro, while Grok Voice remains available on paid plans. Support also follows the plan: Free uses guide, community, and email; Pro and Max include monthly Google Meet allowances.
RPB means Real Performance Benchmark. It is MyTabulon's evidence-adjusted public model score for real agentic business work, combining task completion, tool call accuracy, reasoning, safety, user sentiment, latency, and cost efficiency.
Global search can find feature pages plus clients, leads, inventory, invoices, quotes, deals, projects, tasks, files, expenses, team members, and AI chats within the active company when the signed-in user's role allows it. Member file results are limited to files and folders they uploaded, added, or generated, and sensitive owner/admin destinations stay hidden.
Use Ctrl K or Meta K for the command palette, ? or Ctrl / for the reference, Ctrl B or Meta B for the sidebar, g chords for navigation, n chords for quick create, and r r to refresh page data.
Payment links use long random tokens. Share the generated link, receipt, PDF, or email with customers, not a dashboard URL. The invoice number helps the business identify a document but is not the secret.
Business Memory stores durable company knowledge for Maximo AI: facts, preferences, style, source records, private notes, approved memories, retention rules, provenance, and conflict checks. It is available only to business owners and administrators. Company memories describe shared business facts; first-person or personal work memories stay private to the originating user. Members, Viewers, and Employee Viewers cannot open memory, search it through Maximo chat or voice, receive selected memory in AI context, or have their chats silently captured into company memory.
Who can add or manage Bring Your Own Model (BYOM) connections?
Only Business Owners and Administrators have permissions to manage BYOM connections and import/edit models under Settings > Integrations > Bring Your Own Model. Workspace Members and Viewers cannot manage connections.
Are BYOM models available to everyone in the workspace?
Yes, once a BYOM model is configured and enabled by an owner or administrator, it is available company-wide to all workspace members (Owners, Admins, Members, Viewers) through the model selector in Maximo AI chat.