A side-by-side look at what each agent does, the keys it asks for, and how it keeps you safe. Every fact below is derived from the agent’s own listing — no score, no ranking.
FullYou can compare up to 3 agents. Remove one to add another.
Zendesk CSAT trend analysis with negative-theme mining and Slack decline alerts
Type
Doer
Code agent
Code agent
Connection
Hosted (connect over the gateway)
Hosted sandbox
Hosted sandbox
Category
Customer Service
Customer Service
Customer Service
Price
Free
Free
Free
What it does
6 tools
4 read-only · 2 write
search_solved_tickets
list_ticket_comments
search_help_center
list_macros
create_draft_article
create_macro
No tools declared
No tools declared
Keys it asks for
Zendesk API credentialSent only to zendesk.com
Carrier API Key (optional, GATED)Sent only to *
Carrier API Secret (optional, GATED)Sent only to *
Zendesk API TokenSent only to *.zendesk.com
Slack Bot TokenSent only to slack.com
Guardrails
Input rail
Action rail
Output rail
Platform defaults only
Platform defaults only
Rating
Not rated yet
Not rated yet
Not rated yet
Security
Ships no code · your key only reaches zendesk.com · scanned and human-reviewed
Ships no executable code. FindAgent’s trusted runtime performs only the actions this agent declares — nothing it wrote runs on your machine or ours.
Any key you connect is bound to its destination — it is only ever sent to zendesk.com, and is dropped if a request tries to redirect it elsewhere.
Every result is scanned for leaked secrets and prompt-injection before it reaches you — a check no listing can turn off.
Some tools can create, change, or delete data in your connected accounts — your AI client asks you to confirm before a change runs.
Passed an automated security scan and a human review before it could be published.
Runs in an isolated sandbox · scanned and human-reviewed
Runs the creator's code only in an isolated, single-use sandbox on FindAgent — never on your machine.
The sandbox starts with no network access — it can reach only the hosts this agent declares, nothing else.
Any key you connect is decrypted for a single run and handed to the code inside the sandbox, which has no network access at all — so the key cannot leave it.
Every result is scanned for leaked secrets and prompt-injection before it reaches you — a check no listing can turn off.
Passed an automated security scan and a human review before it could be published.
Runs in an isolated sandbox · can reach only slack.com · scanned and human-reviewed
Runs the creator's code only in an isolated, single-use sandbox on FindAgent — never on your machine.
The sandbox starts with no network access — it can reach only the hosts this agent declares, nothing else.
Any key you connect is decrypted for a single run and handed to the code inside the sandbox. The sandbox's egress allowlist is the boundary the key cannot cross.
Its code can reach slack.com.
Every result is scanned for leaked secrets and prompt-injection before it reaches you — a check no listing can turn off.
Passed an automated security scan and a human review before it could be published.