To provide access to AI Agent Engineering, assign users the appropriate roles in Administrator. You can assign a system-defined role or create custom roles for users.
The following table describes the system-defined roles that provide access to AI Agent Engineering:
Role
Description
Admin*
Provides full access to AI Agent Engineering.
Designer*
Provides full access to AI Agent Engineering.
Monitor*
Allows users to view assets, monitor AI agents, view conversation logs, and download monitoring details in AI Agent Engineering.
Operator*
Allows users to read, update, and delete assets in AI Agent Engineering. Also allows users to run agent flows and execute managed MCP servers.
* Provides access to multiple services.
You can also create a custom role to provide access to AI Agent Engineering. If you create a custom role, be sure to assign it the appropriate asset and feature privileges. For more information about AI Agent Engineering asset and feature privileges, see "Asset and feature privileges."
For more information about system-defined and custom user roles, see "User roles" in the Administrator help.