Access model
Use named accounts where possible, password managers, limited permissions, client-approved access, and separate approval for privileged actions.
Operating policy
Delegated work should use least privilege, explicit approval, access records, and revocation planning before any assistant or workflow receives client-system access.
Use named accounts where possible, password managers, limited permissions, client-approved access, and separate approval for privileged actions.
SOPs, QA sampling, activity notes, escalation rules, and evidence of completed work help clients review outcomes and recover from mistakes.
Suspected misuse, credential exposure, data mishandling, or unsafe access should be escalated to the client owner and GlobalAdmin.ai contact immediately.