What it will not do
Every limit Athren publishes, on one page. None of them is written here for the first time: each is the same sentence that closes the page for the rung or the connector it belongs to.
Where each rung stops.
One-off delivery checks across your tools
It runs once, when you ask. Nothing watches on its own, and closing the tab ends it.
Delivery automations triggered by your tools
A trigger fires on what a connected system publishes. It cannot see what leaves no trace in any of them.
Scope guards you build by speaking
One judgement call, a fixed shape, fixed permissions. An agent that picks its own next step is not this, and is not what we sell.
Read-only views over delivery stateOn the roadmap. Not running yet.
It reads and never writes. It cannot name the documents an agent read, because a run records how many candidates it weighed and not which ones came back.
Scope-change review queuesOn the roadmap. Not running yet.
A fixed kit of parts, deliberately. What the kit does not contain is not built by asking for it.
Repeated delivery work, noticed and proposedOn the roadmap. Not running yet.
It proposes. Nothing runs because it was found, and a proposal you ignore stays a proposal.
What each connector is not allowed to touch.
Every one of these is the scope the connection is granted, not a setting inside the product.
It can leave a draft in the mailbox and it can send a message. The agents shipped today stop at the draft, because a draft is reversible in the way a sent message is not.
It can create a document, a sheet or a folder. It edits no file that already exists, moves none, and changes no permission. Your document stays where your document already is.
The primary calendar only, reading and writing both. It can put an event on it, and it cancels none and moves none. A listing refuses to run without a window, so nobody reads a whole account by leaving one out.
It can post one message. It edits nothing already posted and deletes nothing. It sees exactly the channels its token sees.
It can add a page and append blocks to one. It rewrites nothing already written and archives nothing. It sees only what you share with the integration, which is Notion’s boundary rather than one we impose, and its search and query calls are POSTs that change nothing.
It can open one issue. It moves none, closes none, and comments on none.
It can add a record and a comment. It updates no record that already exists and deletes none.
It can open an issue and comment on one. It opens no pull request, pushes no commit, and merges nothing.
Finish the client call with the work already mapped.
Send one recent client meeting. Leave with the actions, follow-ups and exceptions a person can approve.