Activity is discovered
3LS brings broad AI use into view and classifies the available evidence.
AI controls
Your organisation owns the controls over reachable tools, credentials, shared state, and delegated authority. 3LS provides discovery, classification, policy evaluation, and evidence across broader AI use. On supported managed MCP stdio paths, typed action classification supports a grant or deny before downstream, with journalled outcomes and at-most-once handling.
The useful test is whether this action, by this user or process, on this route, is allowed by organisational policy. Enforcement remains limited to supported managed MCP stdio paths.
3LS brings broad AI use into view and classifies the available evidence.
Teams can weigh business purpose, sensitivity, and risk to produce an explainable policy evaluation.
On supported managed MCP stdio paths, typed action classification supports a grant or deny before downstream.
Operators get journalled outcomes and at-most-once handling for the supported managed operation path.
Discover
Map the tools and workflows people use, then retain the evidence operators need.
Evaluate
Classify activity and evaluate business purpose, sensitivity, and risk with the available context.
Managed MCP
Grant or deny managed MCP stdio operations before downstream and keep a journalled result.
From the blog
Research on managed-path decisions, approval fatigue, containment limits, and tool-level policy.

A user asked to move up a gym waitlist. His assistant reportedly cancelled someone else's reservation and could not restore it. The failure sat between a legitimate goal and an unauthorised method.

OpenAI rebuilt the service, but the agents recreated their shared channel. The incident shows why enterprises must control persistent state, credentials, communication paths, and delegated authority themselves.

Prompt warnings and approval clicks do not contain a tool-enabled agent. Hard execution policy does.