Sloth-ninja puts firms in charge of personal AI access
Firm policies now actively control whether members can manage their own AI keys and chat-tool connections.
The fork turns two administrative settings into real guardrails. A firm can set the rule, and members see a clear firm-managed state instead of a confusing dead end.
- Personal AI keys: firms can prevent members from adding, changing, or deleting their own provider credentials.
- Chat-tool connectors: firms can stop members creating, reconfiguring, removing, or authorising personal connections to external tools. Existing connections can still be read and maintained so they keep working in chat.
Administrators can change either policy from firm settings, with an extra identity check. The same restrictions apply to admins as to other members.
Spotted something wrong? Or know the PR text has fresher detail than the writeup above?