Every AI Agent Needs an Owner | DreamFactory Agent Control Plane

An agent in your stack reads tables and spends tokens. That has to land on a person, a department, a cost center. DreamFactory maps the agent onto an identity you already have: LDAP, OpenID Connect, SSO. Access and cost follow that person.

In this demo we register sales-bot, bond it to Alex Rivera, and run it inside the retail-reader role with a four hour key. GET customers is in the role, so it goes through. GET products is 403. The bot files a request and waits. It cannot approve itself. A person approves, which writes GET products onto Alex's role. Same identity, retry works. AI usage shows token spend by user, role, and key. Kill the agent and the next call is 403.

Try it: https://www.dreamfactory.com

0:00 Access and cost, tied to a person

0:19 Control plane

0:28 Map sales-bot to Alex

0:44 Reach map

1:00 In-role GET

1:13 The bot asks

1:30 A person approves

1:46 Same identity, retry

1:57 Token spend

2:15 Data ledger

2:25 Kill

2:34 Next call is 403

#DreamFactory #AIAgents #MCP #APIManagement #Identity #SSO