Agent services
Third-party agents and agent services
Web actions, research, payments, phone calls and code execution are where agents reach past your walls. Put each service behind the Gateway, and every call is authorized, metered and audited.
Agent services
Third-party agents and agent services
Any agent service with a remote MCP server
Web, research, payments, voice and sandboxes go behind the Gateway like any tool.
How it works
Behind the Gateway like any tool
Most agent services ship a remote MCP server. Add it by URL and the same rules, quotas and audit apply.
01
Add the service
The service's API key stays in Dome.
$ dome tools add --name web-search \--url <service-mcp-url> \--auth-method api-key \--gateway prod-gateway02
Sync the catalog
Its tools become available to the agents you grant them to.
$ dome tools catalog sync web-search
Commands tested against a Dome workspace on September 30, 2026.
FAQ
Common questions
Why govern a search or browser service?
It's where an agent reaches the open web. Rules decide which agents may use it, and audit records every call.
Do agents hold the service's API key?
No. Dome holds it and injects it on each call.
Next steps
Talk with our FDE team
Our forward deployed engineers work with your platform team to get your agents into production and under control: the first one governed on your own systems, and a pattern your teams can repeat for every agent after it.
No card required to start. Register your first agent in minutes.
MCP gateway guide
What an MCP gateway does, and what to ask of one before your agents depend on it.
Read the guide