Cequence Security announced the general availability of Agent Personas in Cequence AI Gateway on April 29, 2026. Agent Personas security represents a new approach to governing autonomous AI agents by providing granular, infrastructure-level control over what AI agents can access and execute, down to specific tool calls.

The solution addresses a critical gap in current artificial intelligence deployment. Organizations typically authenticate AI agent identity through standard credentials, assuming that identity control equals access control. However, agents inherit the privileges of their users and, unlike humans, lack judgment about when to restrict available access. Agent Personas solves this by using plain-English job descriptions to define scoped virtual endpoints for each agent role.

How Agent Personas Security Works

The system assigns specific permissions based on job function rather than user identity. A customer service AI agent receives read-only CRM access without ability to modify records. A coding agent can read GitHub issues and create Jira tickets but cannot merge pull requests. A CI/CD automation agent gets access to specific pipeline tools and a single notification channel only.

Each agent role receives a scoped virtual Model Context Protocol (MCP) endpoint. This single endpoint presents only the tools and permissions appropriate for that role’s function. Organizations update a persona once, and the change applies immediately across every agent using it without requiring code modifications. Every tool call receives full attribution to the specific agent, user, persona, and timestamp.

Agent Personas Key Capabilities

  • Scoped virtual MCP endpoint per agent role with access defined down to specific API endpoints and permission levels
  • Natural language persona creation allowing plain-English descriptions of agent functions with automatic tool selection
  • Agent Access Keys, a composite credential type binding agent identity, user identity, and persona privileges into single attributable credentials for headless agents
  • Per-tool policy enforcement including rate limits, data masking, and approval workflows at individual tool call level
  • Full audit trail capturing every tool call with agent, user, persona, and timestamp attribution
  • Model-agnostic enforcement across OpenAI, Google, Anthropic, open-source, and custom models equally

Enterprise Deployment and Market Context

According to Gartner research from February 2026, the primary risk in securing agents lies not in what the AI says but in what it does. More than 80 percent of Fortune 500 companies deploy active AI agents, yet only 47 percent have AI-specific safeguards in place. Gartner further states that if an AI agent cannot prove who it is acting for and why, it should not receive access to tools and data.

A major U.S. telecommunications provider deployed Agent Personas to prevent agents from crossing boundaries in tools like GitLab, Confluence, Jira, and Slack. Scoped virtual endpoints ensured each agent accessed only necessary resources, eliminating lateral access risks without requiring additional infrastructure.

Ameya Talwalkar, CEO and Co-Founder at Cequence, stated that organizations have made substantial investments in AI platforms but struggled to move agents from pilot to production safely. “Cequence closes the gap that has been holding organizations back by automatically limiting agent tool access, which lowers costs, enhances performance, and improves security,” Talwalkar said.

Platform Recognition and Scale

Agent Personas builds on strong momentum for Cequence AI Gateway, which has grown to more than 140 verified enterprise application integrations. The platform protects more than 10 billion daily API interactions and four billion user accounts. Cequence was recognized as No. 128 on the 2025 Deloitte Technology Fast 500 list, a Leader in the 2025 KuppingerCole Leadership Compass for API Security and Management, and co-chairs TM Forum’s AI-Native Blueprint Initiative on Agentic Interaction Security.

Shreyans Mehta, CTO and Co-Founder at Cequence, described Agent Personas as the control plane enterprises need. “Agent Personas is how you govern infrastructure access at the agent level, enforcing exactly what each agent can do down to the specific API endpoint, across any model or platform,” Mehta said.