durin
Sign up

Give every audit review a connected record.

Give reviewers a connected record of governed AI agent access, from the requesting identity and policy to approval, execution, and outcome.

Decision record

Follow the action.

Requested action
Create a ticket
Policy decision
Approval required
Reviewer
Independent approver
Execution
Recorded separately

A decision is not proof of completion.

Illustrative governance workflow

Trace one request from question to outcome.

Review the requesting identity and client, connection and resource, policy version, approval, and resulting outcome in one governed request record.

Identity

Who initiated the action?

The requesting user and authenticated client.

Scope

What could the agent reach?

The connection, tool, and resource context.

Decision

Why was it permitted?

The policy version and exact approval, where required.

Outcome

What actually happened?

Succeeded, failed, or uncertain—separate from the policy decision.

Evidence fields for your evaluation, not a customer audit record. Metadata-only retention is the default.

Start the record at the access request.

A review connects the person, purpose, and requested server. Follow that same discipline through policy and execution when you assess an agent workflow.

Download the security review brief
Durin admin console showing requested MCP connections and their review status
Give administrators one place to review connection requests.

Bring the right evidence to the review.

  1. Start with the decision itself

    Record whether a request was allowed, denied, approval-required, failed, or uncertain, with the policy and capability context that makes the result reviewable.

  2. Follow changes and exceptions

    Keep membership revocation, policy changes, tool and schema changes, approval consumption, and provider trust visible. A one-use approval remains distinct from standing access.

  3. Give reviewers a bounded handoff

    Authorized metadata export and checksum evidence support a review handoff. Delivery, retention cleanup, legal hold, residency, and SIEM delivery are verified for the customer workflow.

Inspect production trust

Evaluate the evidence behind access.

Create an account to evaluate decision records, execution outcomes, retention questions, and production trust checks.

Create an account

Production connections use provider setup and trust review.