Choose who can open the agent
Choose the mode under Who can access your agent in the publishing dialog. Restricted and Private always require sign-in. Only Public exposes the optional Require sign-in and Allow duplication switches.
| Mode | Who can use the agent | When to choose it |
|---|---|---|
| Public | Anyone with the link. Require sign-in determines whether an Agentplace account is needed first. | A customer-facing agent you want to share broadly. |
| Restricted | The owner and signed-in users whose email address or email domain matches the allowed list. | An agent for selected customers, partners, or a company team. |
| Private | Only the owner, signed in with the owner’s account. | An agent you want to use yourself without granting access to others. |
What does Require sign-in mean?
Sign-in identifies the visitor. It does not select which customers are allowed in, charge them for your service, give them editing access, or connect their Google or other app accounts. Use Restricted to limit the audience. Configure payments and app authorization separately when the task needs them.
| Public agent setting | What a visitor sees |
|---|---|
| Require sign-in off | The visitor can open and use the agent without an Agentplace account. |
| Require sign-in on | The visitor must sign in to an Agentplace account before opening the agent. Anyone who signs in can access this Public agent. |
How do allowed emails and domains work?
Choose Restricted and enter the email addresses or email domains that may use the agent. For example, alex@example.com allows that account, while example.com allows signed-in accounts with an email address at that domain. Enter one value at a time or paste a comma-separated list.
The owner keeps access. A person outside the allowed list cannot use the agent just because someone forwards the link to them. Adding a domain grants access to all matching accounts, so use individual addresses when only selected people should have access.
What are Allow duplication and the Remix URL?
Allow duplication lets other people create their own version of your Public agent. The publishing result provides a Remix URL. A person follows that link, signs in to their Agentplace workspace, and creates a separate draft based on the published version.
The copy includes the agent project and instructions so its new owner can customize the behavior and interface. Your original stays unchanged, and later edits do not automatically synchronize between the two. The new owner configures the copy’s connections and publishes it separately.
The new owner must connect their own app accounts for the copied MCP integrations. Review the instructions and bundled files before enabling duplication because those materials are part of the project you are sharing.
With Allow duplication off, visitors can use the agent according to its access mode without being offered a public Remix URL. This switch is available only for Public agents. Require sign-in and Allow duplication are independent choices.
Share a reusable starting point
A consultant publishes a demo appointment agent and enables duplication. Another business follows its Remix URL, creates a draft, replaces the business knowledge, and connects its own calendar. The consultant’s original demo remains unchanged.
Set boundaries for information and actions
Public visibility does not make every business record public. Decide which information is shared reference material and which belongs to a particular visitor or authorized team.
An app connection grants specific account access. Make sure the agent exposes only the intended actions to customers. Owner-only tools used during building should not be assumed to be available to visitors.
Test with the actual audience
These product settings do not establish a particular legal or regulatory certification. For data handling terms and contact information, use the current policy.
- Open the published link while signed out if anonymous use is intended.
- Try both an allowed and a disallowed account for restricted access.
- Check customer-specific records with separate customer sessions.
- Verify that a customer cannot request unrelated private information or unauthorized actions.
Will customers see Agentplace branding?
The public agent interface does not display Agentplace branding. The standard Agentplace sign-in screen does. Full branding requirements, including the sign-in experience, can be agreed in an Enterprise contract.
Brand customization does not mean the agent is unaware of its platform. If someone asks directly where it was built, it can identify Agentplace.
Where is customer data processed and how is it protected?
Agentplace uses cloud infrastructure and service providers including AWS, Google Cloud, Microsoft Azure, and AI providers such as OpenAI. The providers involved depend on the models and services used. Data is encrypted at rest and in transit.
Contact us for the provider, location, and personnel-access details required for your organization’s security review.
Does Agentplace train on, demonstrate, or sell customer data?
Agentplace does not train models on customer data. We do not use customer data in demonstrations without permission, and we do not plan to sell customer data.
Written guarantees covering these uses are available only through an Enterprise contract. This is because those commitments require stricter checks of our service providers, whose own data-use practices can differ from Agentplace’s.
Can I export or delete a client’s data?
A complete export of an agent’s stored data is available through an Enterprise contract. Agree on the scope and delivery format with us when arranging the export.
We can fully delete a client’s stored agent data, and deletion takes effect immediately. If your organization requires specific commitments about backup copies or provider retention, include those requirements in the security and contract review.
How do I request a DPA or information about SOC 2?
Contact us to request security documentation and discuss the certificates, data processing agreements, and contractual commitments your organization needs.