PLATFORM / ACCESS CONTROL
Allow AI.
Set the limits.
Approve the apps your teams need. Restrict personal accounts, control MCP tools, and remove unapproved skills.
"We allow ChatGPT" leaves a lot unanswered.
Set the account, tool, and workspace permissions behind an app approval.
Keep work in the company account.
An approved app can still be used through a personal account. Require your corporate workspace or tenant on supported AI services.
Approved workspace ID
ALLOWEDOutside the approved workspace
RESTRICTEDCorporate account controls for supported ChatGPT, Claude, Gemini, and Copilot sign-in paths.
Govern what your employees use.
Allow and disallow web AI. When someone opens a blocked app in the browser, they see why and how to request access instead of a silent failure.
Kimi is blocked by your organization
Blocked by your organization's AI access policy
kimi.comExample block screen. Shown in place of the page when an app falls outside policy.
Approve a server. Choose its tools.
A developer needs to read pull requests. That doesn't mean their agent needs permission to delete a repository.
Example tool permissions. Enforced through supported coding-agent hooks.
Remove what shouldn't be installed.
A skill or hook you reject can still be sitting on a developer's machine. Send a removal action to the managed endpoint and follow the result.
Action sent to managed devices
An action sent to a device stays separate from confirmed removal.
Give a team access. Keep the rule for everyone else.
Engineering needs a tool that Finance doesn't. Apply an exception to the Engineering workspace without changing access for the rest of the organization.
Enable access requests so employees can ask for a blocked app. An administrator reviews the request and chooses who gets access. The approval stays linked to the policy it creates.
- 01Allow the appEXCEPTION
Engineering workspace
- 02Block the appDEFAULT
Rest of the organization
The first matching rule wins. The workspace exception sits above the broader rule.
Turn findings into access decisions.
Access Control is the fourth module in the Rogue platform.
AI SPM
Find and assess AI assets.
AI AppSec
Test AI applications.
AIDR
Detect threats in AI interactions.
Access Control
Enforce what teams can use.
Access Control uses the Rogue browser extension, coding-agent hooks, and managed endpoint. Available controls depend on the connected integration.
