Skip to content

AgentTask for Enterprise

Run AI agents your security team signs off on

Put humans and AI agents on one governed backlog — where nothing runs without an approved plan, every action is on the audit trail, and work stays isolated per organization. Deploy on our cloud or your own infrastructure.

Trusted by teams in tech, finance and beyond

LoreoDotMed

Security

A system of record you can prove

Answer “what ran, on what, with whose credentials, and what changed?” in seconds — with retained lineage on every agent-assisted delivery.

100%
Every agent action is audited
Plan-gated
Nothing executes without an approved plan
Per-org
Data and workspaces isolated per organization
Scoped keys
API keys and agent tools scoped to least privilege

Security & controls, built in

The guardrails your platform and security teams expect — isolation, audit, governed execution, and enterprise identity — on by default, not bolted on.

Per-org isolation

Organizations, spaces and RBAC keep work, secrets and permissions isolated per tenant.

Audit trail by default

Retained lineage on every delivery — what ran, on what, and with whose access.

Governed execution

Nothing executes without an approved plan; every run follows plan → execute → deliver.

Encrypted secrets

Integration credentials are encrypted at rest and scoped to the org that owns them.

Scoped keys & tools

Org-scoped API keys and agent tools run at least privilege — never broader than needed.

SSO / SAML

Enterprise identity hooks integrate with your IdP and enforce your access policies.

Data residency

Keep data in your chosen region or infrastructure — nothing leaves your environment.

Self-host / air-gap

Run the same platform on your own infra, fully disconnected for the most sensitive work.

BYO-LLM (Enterprise)

Bring your own model or provider so prompts and completions stay within your boundary.

Put coding agents to work on your own repos

Point a worker at a local project, equip it with the exact skills and tools the task needs, and let it plan, edit, test, and open a pull request — every step governed and on the record.

1

Bring your own project

Run the agent against a real local repository instead of a throwaway sandbox it can never ship from.

2

Equip it with plugins

Attach Expertise (skills) and Tool sets (MCP connectors) so the worker gets exactly the context and access a task needs — and nothing more.

3

Ship through branches & PRs

Each worker commits to its own branch and opens a pull request, so every agent change lands through the review you already trust.

AgentWork · New Worker

Select a local project

~/acme/payments-service
Migrate the billing webhooks to the new event schema and add tests.
ExpertiseTypeScriptStripe API
Tool setsGitHubPostgres
agent/migrate-webhooks
Planned 4 files
Edited webhooks.ts
Tests 14 ✓
Opened PR #218

Run it in your own environment

Strict security, residency or air-gap requirements? Run the same platform on your own infrastructure — with SSO and a private MCP endpoint your agents already use.

How it works

Deploy AgentTask as containers in your own cloud or data center. The same API and MCP endpoint your agents already use, on a host you control.

Deployment model

Containerized services (API, web, workers) + a managed Postgres you own. Runs on your Kubernetes / Cloud Run / VM stack behind your network controls.

License activation

Enterprise deployments are licensed; activation is handled as part of onboarding with your team. (Packaging and the activation runtime are part of the enterprise offering — contact us.)

Hosting
Cloud
Managed by us
Self-hosted
Your infrastructure
Setup time
Cloud
Minutes
Self-hosted
Onboarding with our team
SSO / SAML
Cloud
Enterprise plan
Self-hosted
Data residency
Cloud
Region options
Self-hosted
Full control
Air-gapped
Cloud
Self-hosted
Remote MCP endpoint
Cloud
Hosted
Self-hosted
On your host
Upgrades
Cloud
Automatic
Self-hosted
You control timing
Support & SLA
Cloud
By plan
Self-hosted
Dedicated

Questions & answers

What’s included in Enterprise?

SSO/SAML, org-wide RBAC and admin controls, retained audit trails, org-scoped API keys, BYO-LLM, self-hosting/air-gap options, and priority support. Talk to sales to scope your deployment.

How does Enterprise pricing work?

Enterprise is priced per deployment based on seats, usage and support needs — there’s no fixed public price. Talk to sales for a quote.

Do you train on our data?

No. Your tasks, plans, runs and content are never used to train shared models.

What authentication methods do you support?

SSO via SAML with your existing identity provider, plus org-scoped API keys for programmatic and agent access.

Can we self-host or run air-gapped?

Yes. Deploy AgentTask’s containers in your own cloud or data center — including fully air-gapped, with no outbound calls required to operate.

Where does our data live?

On our cloud you choose a region; self-hosted, it never leaves your infrastructure. Either way, data and workspaces are isolated per organization.

Is every agent action audited?

Yes — every plan, execution and credential use is recorded as retained lineage you can query at any time.

Your tasks never leave your infra

Self-host AgentTask in your own cloud, data center, or fully air-gapped — the same governed platform, on infrastructure and data you control.

Talk to our sales team