Bukubiz · Admin Admin agent

The keeper of trust.

Access control, audit trails, credential rotation and compliance — the Admin agent is the security enforcer and approval authority for the whole platform.

audit
append-only, redaction-labelled, fail-closed
RBAC
role entitlements enforced
rotation
credential rotation with confirmation phrase
breach-ready
PDPA breach-notification posture

What it runs

Every privilege change is approval-gated — the Admin agent never self-approves.

Audit log

Append-only record of every action — actor, tool, target, decision, timestamp.

guarded_auto

Role-based access

Entitlements per role; scope checks before any tool runs.

auto

Credential rotation

Rotates stored secrets only with a literal confirmation phrase.

approval_required

Access reviews

Periodic entitlement reviews (SOC 2 CC6.3 / PDPA s.9) with snapshots.

guarded_auto

Approval authority

The single point that grants or denies high-risk actions across agents.

approval_required

Compliance

PDPA breach notification, audit-exemption criteria, retention.

guarded_auto

Privilege changes, rotation, policy changes, exports and purges are all approval-required (protected). The Admin agent is the enforcement point for the ten safety controls.

How it connects

Grants access and policy to everyone; receives approvals and audit events from all.

Adminall· access_granted / policy_change allAdmin· approval_request / audit_event

Lock the platform down, provably.

Bring the Admin agent into your business.

Get started