Quick answer
Workers (/admin/workers, HR admins only) is one register of who and what does the work in your organisation: people, AI agents, system services, vendors and teams. Each worker has a kind, a status, a department and, where you set them, a supervisor, an accountable owner and a backup owner. Agents and services must also state a purpose and a data classification.
Workforce is in beta. It is listed on the Modules page with no price yet.
What does the Workers page show?
A searchable table of every worker in your organisation — search by name, employee ID or kind — with each worker's kind (human, agent, service, vendor, team), status (active, inactive, suspended, offboarding), employee ID and whether a department is assigned. View opens a worker; Agents opens the AI worker registry.
How do I add a worker?
Open Add Worker
On the Workers page, select Add Worker.Choose the kind and name
Pick human, agent, service, vendor or team, and give the worker a name. Employee ID and department are optional.Fill the required fields for agents and services
An agent or service cannot be saved without a purpose, an accountable owner, a supervisor and a data classification (public, internal, confidential, restricted or regulated).Add the rest if you have it
Backup owner, scope, authority, inputs, outputs, escalation path, systems accessed and offboarding procedure are optional. If you have set up entities, branches and cost centres, you can scope the worker to them too.
What is on a worker's page?
Their basic information, who they report to (supervisor, accountable owner, backup owner) and their direct reports, the role fields above, and for an AI agent its profile card with the access it holds. From here you can Edit Worker, open the worker's Lifecycle cases, or Retire Worker.
What does retiring a worker do?
It sets the worker's status to offboarding and records it in the audit log. It does not revoke anything by itself. To take access away, open an offboarding case for the worker under Lifecycle — that revokes the grants, keys, tokens, connections and webhooks the worker holds and pulls an agent's kill switch — or revoke individual grants on the Entitlements page.
Is there an org chart of workers?
Yes. /admin/workers/org-chart shows people and agents by reporting line, with the human sponsor named next to each agent.
Why does Entitlements say my account is not linked to a worker?
Approving, revoking, reviewing and killing are done as a human worker, so your own sign-in must be linked to an active human worker. The Add Worker form does not set that link today; if you see this message, contact support to link your account.
Frequently asked questions
- What is the difference between a worker and an employee?
- An employee is a person on your people records. A worker is anyone or anything that does work and can hold access — a person, an AI agent, a system service, a vendor or a team. Adding a worker does not create an employee record or a login.
- Does retiring a worker remove their access?
- No. Retiring only sets the worker's status to offboarding. To revoke their access, open an offboarding case for them under Lifecycle, or revoke their grants on the Entitlements page.
- Who can open the Workers pages?
- HR admins only. Every change is checked against admin access on the server and recorded in the audit log.
Related articles
How do I grant, renew and revoke a worker's access with entitlements?
Entitlements are time-bound access grants for workers. Every grant expires unless renewed, and high-risk grants need a second person to approve.
How do I register and govern AI workers (agents)?
Give each AI agent a profile with default-deny allowlists, approve its prompt versions with a second person, roll back, and pull a kill switch.
How do I run an access review?
An HR admin opens an access review campaign, decides keep, renew or revoke for each grant, and closes it. Grants left undecided expire on close.