Skip to main content

Overview

Formal Agent is the AI assistant built into the Control Plane. Ask it questions in plain language. It can explain Formal, look up your configuration and logs, and draft changes for you to approve.
Formal Agent is not the Formal Endpoint’s background process, which you start with formal agent and which the Linux and OIDC guides call “the agent”. It is also unrelated to the Kubernetes Egress Agent.

Open Formal Agent

  • Click Agent in the sidebar to open the full page.
  • On other pages, type in the Ask Formal Agent box to chat without leaving the page. Press ⌘J (Ctrl+J on Windows and Linux) to show or hide it.
  • From Insights, click Open in Formal Agent to investigate a finding.
Using Formal Agent requires the Agent permission. See Permissions.

What It Can Do

To set up a common outcome without writing code, start with a Recipe. Ask Formal Agent when you need something custom.

Approvals

Formal Agent reads without asking, but it asks before it acts:
  • Changes: Before it changes configuration, it asks Allow Agent to make this control-plane change? Click Allow or Deny. For drafted code, review the proposal and click Approve Change.
  • Screen control: Before it clicks or types on the page, it asks Allow screen control? Choose Allow for one action, Allow for Turn, Allow for Conversation, or Deny.
Changes run in your browser session with your permissions. Formal Agent can’t do anything that you can’t do yourself.
Review every proposed change before you approve it. An approved change takes effect like any change you make by hand.

Next Steps

Recipes

Create common setups from guided templates

Policies

Learn how policies work