In briefHow Citadel secures agent-led delivery
Citadel Cloud Management secures agent-led delivery with six controls applied to every agent and every engagement. Agents run in or adjacent to the client tenancy, grounded in client corpora that are tenancy-isolated per engagement and, where a corpus is privileged, isolated per legal domain. Every agent is a first-class principal with its own attested workload identity through SPIFFE and SPIRE rather than a shared service account, and credentials are broker-issued, ephemeral, and purpose-bound through OAuth token exchange under RFC 8693. A policy decision point running OPA or Cedar evaluates every call against policy, not only the login. Autonomy is set per agent and per action across three tiers, so anything touching money, people, or legal is draft-only behind named approvers with four-eyes enforcement. Every action is logged and attributable, and writes are designed to be reversible. Citadel designs and delivers against SOC 2, ISO 27001, HIPAA, FedRAMP, and CMMC control frameworks and does not represent itself as holding those certifications.