Skip to main content
A binding tells Hexel which connected account to use when an agent calls a toolkit. Without a binding, the agent can’t use the tools — it’s the link between “this agent” and “these credentials for this provider.” For example, binding your support agent to your team’s Gmail connected account lets it send replies on behalf of that mailbox. A binding connects an agent to a toolkit using a specific connected account’s credentials. Without a binding, an agent cannot use a toolkit’s tools.

Key concepts

How it works

When an agent executes a tool, the gateway resolves credentials from the agent’s bindings. You control which toolkits each agent is bound to; the platform handles credential selection.

Getting started

Errors

Security

Common mistakes

  • Binding before connecting an account. Connect the provider account first.
  • Over-binding. Bind only the toolkits an agent actually needs.

Best practices

  • Give each agent the minimum set of toolkit bindings.
  • Reuse one connected account across multiple agents.
  • Review bindings when an agent’s scope changes.

Connected Accounts

The credentials a binding uses.

Executing Tools

Run tools an agent is bound to.

Workspace Groups

Limit which tools can be bound.

Tools (concept)

The model behind bindings.