Settings → Agents shapes how every agent in the workspace triages. It opens on the system prompt, so you can see what agents are told before you change anything.
Changes take effect on the next agent run. Drafts are kept when you switch between sections.
System prompt
The default prompt Clarion gives every triage agent in the workspace. Clarion maintains it and you can’t edit it; the version shown next to it changes whenever Clarion updates the prompt. What you can change is added on top of it: Agent behavior and Escalation & notifications. The escalation bar is written into the prompt itself, so the text you see reflects your current setting. Skills are not part of the prompt. Each agent sees the list of skills assigned to it and opens one only when an issue calls for it, so skills shape how agents work without making every triage longer.Agent behavior
Standing instructions every agent run inherits, on top of whatever its skills say. These were previously called workspace instructions and lived under Settings → Workspace. Over MCP, read and replace them withget_agent_behavior and set_agent_behavior. Use them for context that doesn’t belong to any single skill:
- Your business context, and who owns which system.
- Organization-wide terminology, escalation hierarchy, and on-call conventions.
- Environment-specific quirks (“staging fires this alert nightly; it is expected”).
- What agents must never do.
@-references as the skill editor, so instructions can point at a specific skill by name.
Escalation and notifications
Decides when an agent pages your team, and where it sends escalations, approval requests and questions. Destinations, routing and the on-call rotation are covered in Notifications.Severities that escalate
When an agent finishes triaging an issue it considers a real problem, it escalates it: the issue moves toEscalated and the team is paged. This setting is the bar for that page. The agent escalates only when the issue’s severity is one you selected. Anything below the bar moves to Open instead, so it still waits for a human, just without a notification.
- Default:
HighandCritical. - Choices: any combination of
Low,Medium,High, andCritical. - Minimum: at least one severity. The last one can’t be unchecked.
- The bar applies to agents only. A member who clicks Escalate on an issue always escalates it, whatever its severity.
- Parking an issue in
Opendoesn’t change the verdict. Its disposition and severity stay as triage set them; only the status differs. - Some issue kinds are stricter. Issues of kind Risk or Vulnerability stay
Openon an agent’s decision regardless of this setting. The one exception is aCriticalfinding the agent justifies as imminent danger. See Issue kinds. - Agents are told the bar. Your selection is written into the system prompt, so the agent works from your policy rather than the default.
Skills
Step-by-step playbooks agents open on demand for specific kinds of alerts, such as a phishing report or a suspicious sign-in. Each row shows the skill’s description, which is the only text an agent uses to decide whether to open it; missing descriptions and broken references are flagged. See Skills and Authoring best practices.Workspace
Domains, human-input and Teams scoping toggles, and BYOK.
Notifications
Destinations, routing, and the on-call rotation.