Windrow
A governance layer for AI agents. Windrow sits between agents and the MCP tools they call, so every capability is granted on purpose and every call leaves a record: who is allowed to use the Gmail tools, who actually used them last week, and what has been quietly denied.
Know who can do what
Ask which agents are allowed near your inbox, your files, or your calendar, and get a straight answer instead of grepping config files and hoping you found them all.
Nothing runs unasked
An agent reaching for a tool nobody gave it doesn't quietly get through. The call is stopped, or you're asked first, so new abilities don't arrive already switched on.
See what actually happened
Every call an agent made, and every one it was refused, is still there a week later, so a surprise can be traced back, and access nobody ended up needing can go.