Approval misses what comes next
Approving a coding assistant does not settle which MCP servers, skills or plugins developers add. Each addition can change what the agent can do.
Your developers’ coding agents can run shell commands, read secrets and call MCP tools on company laptops. Identra helps you see what they run, block sensitive prompts and destructive commands by policy, and trace each run to a user and device.
What security teams run into with coding agents today, before a control is in place.
Approving a coding assistant does not settle which MCP servers, skills or plugins developers add. Each addition can change what the agent can do.
Local credentials and configuration files share a workspace with source code. A coding task can put sensitive material within an agent’s reach.
Coding agents can execute commands and call tools. A mistaken instruction can become a destructive action on a developer’s laptop.
When an agent does something risky, security needs to know who ran it, on which device and what happened. An approved app list cannot answer those questions.
Covered by Identra on macOS and Windows, tied to one identity and one timeline.
The same moment, played twice. Once without Identra, once with it.
A developer asks Claude Code to fix a failing build on a company Mac.
The task leads the agent to read a local file containing credentials.
The agent attempts a destructive cleanup command.
Security must piece together who ran the agent and what happened.
Identra discovers Claude Code and the MCP servers, skills and plugins on the laptop.
Access to the protected credentials file is denied on macOS.
With policy set to block, the destructive shell command is denied.
The agent run is recorded with the developer, device, AI client and blocked outcome.
Bring coding agents, MCP servers, skills and plugins on developer laptops into your AI inventory.
Set policy boundaries for coding agent prompts and tool calls.
Block policy-violating Claude Code and Codex prompts, deny destructive shell commands and protect files on macOS.
Review each agent run with its user, device, AI client and allowed or blocked outcome.
QUESTIONS
Prompts to Claude Code and Codex are checked on the device before they are sent. When policy is active, prompts that violate it are blocked.
The Identra endpoint agent supports macOS and Windows. It discovers coding agents, desktop AI apps, MCP servers, skills and plugins on those devices.
Yes. Identra provides policy controls for their prompts and AI agent tool calls. You can set boundaries for sensitive prompts and destructive shell commands while allowing permitted activity.
Coverage is specific to the control. Prompt checks cover Claude Code and Codex, AI agent tool calls are checked against policy, and protected-file access controls apply on macOS.
Identra records each run with the user, device, AI client and allowed or blocked outcome. Where the person is known, activity connects to one identity timeline for an AI audit trail.
KEEP READING
The terms, comparisons and essays behind this page.
A walkthrough with a security engineer.