Dome Systems

Agent services

Third-party agents and agent services

Web actions, research, payments, phone calls and code execution are where agents reach past your walls. Put each service behind the Gateway, and every call is authorized, metered and audited.

Agent services

Any agent service with a remote MCP server

Web, research, payments, voice and sandboxes go behind the Gateway like any tool.

ApifyAgent servicesApolloAgent servicesBrowserbaseAgent servicesCloudflare ContainersAgent servicesDevinAgent servicesElevenLabs AgentsAgent servicesExaAgent servicesFirecrawlAgent servicesHarveyAgent servicesLindyAgent servicesLinkupAgent servicesParallelAgent servicesRetell AIAgent servicesSkyfireAgent servicesSSkyvernAgent services

How it works

Behind the Gateway like any tool

Most agent services ship a remote MCP server. Add it by URL and the same rules, quotas and audit apply.

  1. 01

    Add the service

    The service's API key stays in Dome.

    $ dome tools add --name web-search \
    --url <service-mcp-url> \
    --auth-method api-key \
    --gateway prod-gateway
  2. 02

    Sync the catalog

    Its tools become available to the agents you grant them to.

    $ dome tools catalog sync web-search

Commands tested against a Dome workspace on September 30, 2026.

FAQ

Common questions

Why govern a search or browser service?

It's where an agent reaches the open web. Rules decide which agents may use it, and audit records every call.

Do agents hold the service's API key?

No. Dome holds it and injects it on each call.

Next steps

Talk with our FDE team

Our forward deployed engineers work with your platform team to get your agents into production and under control: the first one governed on your own systems, and a pattern your teams can repeat for every agent after it.