Coverage
One Governed Path
Every call routed through Forgebench, on the agent's own credential. No agent holds a provider key.
Govern Every Call It Makes.


Self-hosted &
Model Agnostic






Forgebench Gives Every Agent Its Own Credential, Its Own Ceiling
And Its Own Record — So You Can See, Live, Every Call It Makes,
Who Owns It, And What It Costs.
Coverage
Every call routed through Forgebench, on the agent's own credential. No agent holds a provider key.
Registry
Owner, state, version, tools, spend against ceiling — registered before its first call.
Policy
The tools and MCP servers an agent may reach, and what may leave your perimeter. Bound at registration, enforced on every call.
Control & Attribution
Caps per model, agent and key, enforced before the round-trip. Whichever cap is reached first refuses the next call.
Guardrails
PII, secrets and denylist checks off the response path. Flagged against the agent, never blocking.
Auditability
Every call and every operator action, hash-linked. Editing an entry is detectable.
Deployment & Implementation
Where it runs. Your infrastructure, your identity provider, your policies.
Developers and agents keep working exactly as they do now; the only change is which key they hold.
Or self-hosted in your Kubernetes cluster with your identity provider, WAF, and network policies.
With a fully visible working set. Four roles: CTO, engineering manager, platform operator, developer.
Three phases, each exiting on evidence.
Scope one live workflow and a pilot group of 10–25 developers. Lock identity and SCIM sources, provider accounts, 2–8 agents and MCP servers, guardrails, data-policy defaults, and access both ways.
EXIT: Pilot plan signed.Next steps
A fixed four-week pilot in your own environment — 10 to 25 developers,
and the two or three agents already running in production.
You don't commit to a platform to run it.