New WiKey Agent Protect For AI agents on Sage

The trust boundaryfor AI agents on Sage.

Your AI agent holds no keys and no tokens. It asks; the boundary decides. WiKey Agent Protect gives every Sage agent keyless attested login, vets every instruction, injects secrets server-side and guards egress and spend — so a compromised agent has nothing to leak. Nothing to steal. Nothing to phish. Nothing to reset.

Keyless attested login Secrets injected server-side Audit + one-click revoke
Keys in a post-quantum vHSM WiKey policy gateway Per-agent identity One-click revoke Sage ERP
How Agent Protect works

The agent asks. The boundary decides. Sage runs the action.

The agent never receives a key or token and can't reach Sage on its own. It asks the WiKey boundary to act; the boundary vets every instruction and performs approved actions under a scoped identity — secrets injected server-side, from a key held in a post-quantum vHSM that's never read or copied.

Your AI agent

Requests an action

Holds no keys or tokens — and can't reach Sage on its own.

asks, never holds
WiKey Agent Protect

The boundary decides

Vets the instruction, injects the secret server-side, guards egress and spend — key sealed in a post-quantum vHSM.

the boundary decides
Sage

Runs the approved action

Under a scoped identity that traces back to a person — every action audited and revocable in one click.

scoped & attributable

Nothing to steal. Nothing to phish. Nothing to reset.

Set up in three steps

From install to protected in minutes

Drop in a small open-source binary, invite the agent, and point it at the WiKey MCP gateway. That's the whole integration.

01

Install

Drop in the binary — a small open-source binary where the agent runs.

02

Invite

Invite the agent — an invite link with a one-time password.

03

Point

Point it at WiKey MCP — the agent connects through the WiKey MCP gateway, not straight to Sage.

What you get

The agent holds nothing. The boundary holds the line.

Three guarantees that hold even if the agent is fully compromised or prompt-injected — closing by design the failures behind 2025's agent breaches.

No keys, no tokens in the agent

Secrets stay in a post-quantum vHSM and are injected server-side — never read, never copied, never exposed to the agent. As in the Salesloft Drift OAuth-token theft, there is nothing to lift.

The agent can't reach Sage on its own

It only requests actions; the boundary vets every instruction and guards egress before anything touches Sage — so a prompt-injected agent, as in M365 Copilot EchoLeak, can't leak beyond policy.

Full audit, one-click revoke

Every action traces to a single agent and is logged. A rogue agent — like the Replit agent that wiped a production database — is killed in one click.

The post-quantum vHSM

Keys live in a vHSM.
The agent never touches them.

WiKey Agent Protect seals the Sage secret key inside a post-quantum virtual HSM — never read, never copied, never backed up. The agent can ask for an action; only the boundary, after vetting the instruction, uses the key to carry it out. This is the keys pillar of one trust boundary — paired with data tokenization, no real data reaches the agent either.

Sealed in a post-quantum vHSM

The secret key is held in a post-quantum virtual HSM — never read, never copied, never backed up, and never exposed to anyone, not even the agent itself.

Can't reach Sage alone

The agent only requests actions through the WiKey policy gateway. Every instruction is vetted and egress guarded before anything touches Sage.

Per-agent identity & revocation

Every action traces back to a single agent under a scoped identity, and you can revoke any agent one at a time.

Make the boundary the only thing your Sage agents can reach.

Put WiKey Agent Protect in front of Sage: the agent asks, the boundary decides. Nothing to steal. Nothing to phish. Nothing to reset. Let's set it up.

Talk to us