Keep your agents.
Put policy around them.
Your working tree stays local. Sluis governs the model traffic and tool calls, with purpose-isolated agent keys.
Sign in from your MCP client.
Point Claude Code, Codex, Cursor or another MCP client at /agent/mcp. It opens your browser, you sign in as usual and approve its access. Its calls then run under your own agent key, and you can revoke a connected client at any time.
Tools under each member’s own account.
In their Sluis Workspace settings, members connect their own accounts to tools that support sign-in. Each tool call then runs as that person, not under one shared organisation token.
Private servers wait for approval.
When you allow it, a member can propose a private MCP server. It stays inactive until an administrator approves it and chooses its tools. Your residency policy still applies.