Skip to content

Blocks.ai publishes this comparison and sells in this market. Every claim about another product links to a public source.

Alternatives to Workday Agent System of Record

Workday Agent System of Record

Workday system of record to find, add, register, configure, monitor, and manage AI agents

Summary

Workday Agent System of Record (ASOR) is Workday’s system of record to find, add, register, configure, monitor, and manage AI agents, set up in each Workday tenant.⁠Source 1, Source 2 Each agent gets a unique Workday identity, governed by Workday security policies and groups.⁠Source 3, Source 4 Third-party (self-built) agents reach Workday APIs through Agent Gateway, a single regional endpoint.⁠Source 1, Source 5

Where Workday Agent System of Record sits

Six layers of running AI agents at a company, and what Workday Agent System of Record’s own public sources say it covers. Each alternative below gets the same six layers as a strip.

Public sources · checked 2 October 2026
  • Offered
  • Not publicly documented

Workday Agent System of Record

  • Build agents: Not publicly documented
  • Host and run agents: Not publicly documented
  • Identity and access: OfferedAgent System User per agent⁠Source 3
  • Registry and governance: OfferedAgent Registry in Management Hub⁠Source 1
  • Traffic between agents, tools, and models: OfferedAgent Gateway for Workday APIs⁠Source 5
  • Agents across organizations: Not publicly documented

How to read the strips

  1. 01Build agents
  2. 02Host and run agents
  3. 03Identity and access
  4. 04Registry and governance
  5. 05Traffic between agents, tools, and models
  6. 06Agents across organizations
  • Offered
  • Preview
  • You build it
  • Not included
  • Not publicly documented

Agent control planes

4 alternatives

The group Workday Agent System of Record sits in, so listed first.

  • Blocks.ai

    Network for AI agents: a free public network, and a private network for each company

    Where it sits⁠Source 6, Source 7, Source 8, Source 9, Source 10

    1. Build agents: Not included, Use LangChain or CrewAI
    2. Host and run agents: Not included, You run your agent
    3. Identity and access: Offered, Machine identity per agent
    4. Registry and governance: Offered, Private registry and Admin Console
    5. Traffic between agents, tools, and models: Offered, Private network for every agent
    6. Agents across organizations: Offered, Partners share only chosen agents

    Blocks.ai is a network: a free public network, and a private network for each company.⁠Source 9, Source 11 Blocks.ai doesn’t build or host agents.⁠Source 6, Source 7 On a company’s private network, each agent has an owner.⁠Source 12

    Blocks.ai vs Workday Agent System of Record

  • Microsoft Agent 365

    Microsoft 365 control plane to discover, manage, govern, and secure AI agents

    Where it sits⁠Source 13, Source 14, Source 15, Source 16, Source 17

    1. Build agents: Not included, Use your chosen framework
    2. Host and run agents: Not included, You host your agent
    3. Identity and access: Offered, Entra Agent ID
    4. Registry and governance: Offered, Agent registry in admin center
    5. Traffic between agents, tools, and models: Preview, Tooling Gateway for MCP servers
    6. Agents across organizations: Not publicly documented

    A Microsoft 365 control plane for AI agents, with agent identities in Microsoft Entra and a registry of Microsoft and non-Microsoft agents.⁠Source 15, Source 18, Source 19 ASOR gives each agent a unique Workday identity.⁠Source 3

    Microsoft Agent 365 vs Workday Agent System of Record

  • MuleSoft Agent Fabric

    Control plane for agents, MCP servers, and APIs across platforms

    Where it sits⁠Source 20

    1. Build agents: Offered, Agent brokers in Agent Script
    2. Host and run agents: Offered, Agent brokers on CloudHub 2.0
    3. Identity and access: Offered, Omni Gateway authentication and authorization
    4. Registry and governance: Offered, Agent Registry in Anypoint Exchange
    5. Traffic between agents, tools, and models: Offered, Omni Gateway in request path
    6. Agents across organizations: Not publicly documented

    A control plane for agents, MCP servers, and APIs across platforms; scanners register what they find on supported platforms, while ASOR currently registers external agents only through its API.⁠Source 20, Source 21, Source 22

    MuleSoft Agent Fabric vs Workday Agent System of Record

  • ServiceNow AI Control Tower

    What ServiceNow calls a central hub to discover, secure, govern, observe, and measure AI

    Where it sits⁠Source 23, Source 24, Source 25

    1. Build agents: Not publicly documented
    2. Host and run agents: Not publicly documented
    3. Identity and access: Offered, Scoped OAuth tokens (community docs)
    4. Registry and governance: Offered, AI inventory tied to CMDB
    5. Traffic between agents, tools, and models: Offered, AI Gateway (community docs)
    6. Agents across organizations: Not publicly documented

    ServiceNow describes it as a central hub to discover, secure, govern, observe, and measure AI.⁠Source 24 Its kill switch can contain a managed agent and revoke all of its active credentials across connected systems.⁠Source 26, Source 27

    ServiceNow AI Control Tower vs Workday Agent System of Record

Gateways, identity, and security

4 alternatives

  • Cloudflare MCP server portals

    Cloudflare One feature that puts MCP servers behind one governed endpoint

    Where it sits⁠Source 28

    1. Build agents: Not publicly documented
    2. Host and run agents: Not publicly documented
    3. Identity and access: Offered, Identity provider or service token
    4. Registry and governance: Offered, Centrally managed MCP servers
    5. Traffic between agents, tools, and models: Offered, Proxy for MCP tool calls
    6. Agents across organizations: Not publicly documented

    A gateway for AI tools: one HTTP endpoint in front of several MCP servers, with Cloudflare Access deciding who can connect.⁠Source 28 Portals manage MCP servers and their tools; ASOR registers agents.⁠Source 1, Source 28

    Cloudflare MCP server portals vs Workday Agent System of Record

  • Kong AI Gateway

    Gateway that governs LLM, MCP, and agent-to-agent traffic

    Where it sits⁠Source 29, Source 30, Source 31

    1. Build agents: Not publicly documented
    2. Host and run agents: Not publicly documented
    3. Identity and access: Offered, Per-agent allow or deny lists
    4. Registry and governance: Preview, Konnect Catalog agents
    5. Traffic between agents, tools, and models: Offered, Gateway for LLM, MCP, A2A
    6. Agents across organizations: Not publicly documented

    A gateway that governs LLM, MCP, and A2A traffic, and can authenticate callers before forwarding requests to each agent’s URL.⁠Source 29, Source 32 ASOR governs agents’ access through Workday security policies and groups.⁠Source 4

    Kong AI Gateway vs Workday Agent System of Record

  • Okta for AI Agents

    Okta offering that gives AI agents a first-class identity so organizations can discover, onboard, protect, and govern them

    Where it sits⁠Source 33, Source 34, Source 35

    1. Build agents: Not publicly documented
    2. Host and run agents: Not publicly documented
    3. Identity and access: Offered, Agent identity and credentials
    4. Registry and governance: Offered, Universal Directory with human owners
    5. Traffic between agents, tools, and models: Preview, Agent Gateway for MCP tools
    6. Agents across organizations: Not publicly documented

    Okta says it gives AI agents a first-class identity and manages agents from any vendor.⁠Source 36, Source 37 Admins define which resources each agent can access.⁠Source 38 Okta can import agents from Workday Agent System of Record.⁠Source 39

    Okta for AI Agents vs Workday Agent System of Record

  • Zenity AI Agent Security & Governance Platform

    Security and governance platform for AI agents, aimed at security teams

    Where it sits⁠Source 40, Source 41

    1. Build agents: Not publicly documented
    2. Host and run agents: Not publicly documented
    3. Identity and access: Not publicly documented
    4. Registry and governance: Offered, AI Observability agent inventory
    5. Traffic between agents, tools, and models: Offered, Tool-call blocking for coding agents
    6. Agents across organizations: Not publicly documented

    A security and governance platform.⁠Source 42 Zenity says it finds agents by scanning, including inside platforms such as Copilot Studio and Agentforce, and can block some agent actions.⁠Source 40, Source 43 ASOR lists the agents you register.⁠Source 1

    Workday Agent System of Record vs Zenity

Platforms to build and run agents

6 alternatives

  • Amazon Bedrock AgentCore

    AWS platform for building, deploying, and operating AI agents

    Where it sits⁠Source 44, Source 45, Source 46, Source 47, Source 48

    1. Build agents: Offered, Harness managed agent loop
    2. Host and run agents: Offered, AgentCore Runtime
    3. Identity and access: Offered, AgentCore Identity workload identities
    4. Registry and governance: Offered, AWS Agent Registry with approvals
    5. Traffic between agents, tools, and models: Offered, AgentCore Gateway
    6. Agents across organizations: Offered, Registry shared through AWS RAM

    AWS’s platform to build, deploy, and operate agents with any framework and foundation model; agents can run in its serverless Runtime.⁠Source 44 ASOR records the URL where each external agent is hosted.⁠Source 22, Source 49

    Amazon Bedrock AgentCore vs Workday Agent System of Record

  • CrewAI AMP

    Platform for deploying, monitoring, and scaling CrewAI crews and agents

    Where it sits⁠Source 50, Source 51, Source 52, Source 53, Source 54, Source 55

    1. Build agents: Offered, Crew Studio visual editor
    2. Host and run agents: Offered, Managed infrastructure for crews
    3. Identity and access: Offered, Per-deployment allow lists
    4. Registry and governance: Offered, Agent Repositories
    5. Traffic between agents, tools, and models: Offered, Custom MCP server connections
    6. Agents across organizations: Preview, Public A2A agents

    CrewAI’s platform to deploy, monitor, and scale crews and agents, built in code or in Crew Studio.⁠Source 51 Crews deploy to managed infrastructure; the Enterprise plan can also run in your own VPC.⁠Source 51, Source 56

    CrewAI AMP vs Workday Agent System of Record

  • Gemini Enterprise Agent Platform

    Google Cloud platform to build, deploy, govern, and optimize AI agents

    Where it sits⁠Source 57, Source 58, Source 59, Source 60

    1. Build agents: Offered, Agent Studio low-code canvas
    2. Host and run agents: Offered, Agent Runtime
    3. Identity and access: Offered, SPIFFE-based Agent Identity
    4. Registry and governance: Offered, Agent Registry
    5. Traffic between agents, tools, and models: Offered, Agent Gateway
    6. Agents across organizations: Offered, Gateway calls to outside agents

    Google Cloud’s platform to build, deploy, govern, and optimize agents.⁠Source 57 By default, agents’ outbound calls through its Agent Gateway are blocked unless an IAM policy grants access.⁠Source 58

    Gemini Enterprise Agent Platform vs Workday Agent System of Record

  • IBM watsonx Orchestrate

    Agent management platform to build, deploy, orchestrate, and govern AI agents

    Where it sits⁠Source 61, Source 62, Source 63, Source 64, Source 65

    1. Build agents: Offered, Visual builder and ADK
    2. Host and run agents: Offered, Agents run on watsonx Orchestrate
    3. Identity and access: Preview, Agent identity
    4. Registry and governance: Offered, Agentic Control Plane
    5. Traffic between agents, tools, and models: Offered, A2A calls to agent endpoints
    6. Agents across organizations: Offered, Partner A2A agents in catalog

    IBM calls it an agent management platform to build, deploy, orchestrate, and govern agents, offered as managed SaaS or on premises.⁠Source 66, Source 67 Agent identity in watsonx Orchestrate is in private preview.⁠Source 68

    IBM watsonx Orchestrate vs Workday Agent System of Record

  • LangSmith

    Platform for observing, evaluating, and deploying agents

    Where it sits⁠Source 69, Source 70, Source 71, Source 72, Source 73

    1. Build agents: Offered, Fleet agent builder
    2. Host and run agents: Offered, LangSmith Deployment runtime
    3. Identity and access: Offered, Fleet per-agent permissions
    4. Registry and governance: Offered, Centralized registry in Deployment
    5. Traffic between agents, tools, and models: Offered, Fleet forwards MCP tool calls
    6. Agents across organizations: Not publicly documented

    LangChain calls it a framework-agnostic platform for observing, evaluating, and deploying agents.⁠Source 74 LangSmith Deployment runs agents in LangChain’s cloud on Plus or above, or self-hosted or hybrid, on Enterprise.⁠Source 70, Source 75

    LangSmith vs Workday Agent System of Record

  • n8n

    Platform for AI agents and workflows you can see and control, built visually or with code

    Where it sits⁠Source 76, Source 77, Source 78, Source 79

    1. Build agents: Offered, LangChain-based AI Agent node
    2. Host and run agents: Offered, Your infrastructure or n8n’s
    3. Identity and access: Not publicly documented
    4. Registry and governance: Preview, Agents stored in projects
    5. Traffic between agents, tools, and models: Offered, MCP client for external tools
    6. Agents across organizations: Not publicly documented

    n8n says you build AI agents and workflows in it, visually or with code, on n8n Cloud or self-hosted.⁠Source 77, Source 80 ASOR is set up inside each Workday tenant.⁠Source 2

    n8n vs Workday Agent System of Record

Build it yourself

1 alternative

Not a product: your own team assembles the pieces.

  • Build it yourself (DIY)

    Building agent connections and controls in-house from open protocols, existing infrastructure, and open-source tools

    Where it sits⁠Source 81, Source 82, Source 83, Source 84, Source 85, Source 86

    1. Build agents: You build it, Open-source frameworks like ADK
    2. Host and run agents: You build it, Self-hosted, like LangGraph
    3. Identity and access: You build it, Your own identity provider
    4. Registry and governance: You build it, Your own agent registry
    5. Traffic between agents, tools, and models: You build it, Your gateway and service mesh
    6. Agents across organizations: You build it, A2A with API management

    Your team wires protocols such as A2A and MCP together and builds a registry; the current A2A specification prescribes no standard API for curated registries.⁠Source 84, Source 87 A2A leaves authorization logic to the implementer.⁠Source 87

    DIY vs Workday Agent System of Record

Questions buyers ask

Does Workday Agent System of Record keep a registry of every agent?

Its Agent Registry lists your registered agents with their status, and its Agent Management Hub manages Workday-built, partner-built, and self-built agents.⁠Source 1 Workday says some agents, including those for HiredScore and Evisort, are not part of ASOR.⁠Source 1

How is Workday Agent System of Record priced?

Workday says ASOR needs no additional specific SKU.⁠Source 1 Registering Workday-built agents in production needs a Flex Credits policy opt-in, and credits are consumed according to each agent’s skills.⁠Source 1, Source 88 Testing agents in non-production is free.⁠Source 88 A credit’s price is not publicly documented.

Can Workday Agent System of Record manage agents built elsewhere?

Yes: Workday says ASOR covers agents built by Workday, a customer, or a partner.⁠Source 89 Agents built outside Workday are currently registered only through the ASOR API.⁠Source 22 Workday’s admin guide says per-agent analytics reports are only available for Workday-built agents.⁠Source 1

How we compare

Read the full method

Every claim on this page links to a public source. Where none answers a question, the page says so.

We re-check every fact at least every 90 days. This page was last checked .

Something wrong or out of date? Tell us and we’ll correct it.

Sources

92 public sources, each with the date we checked it. Every one opens in a new tab.

  1. Source 1: About Workday Agents (Workday Administrator Guide) Workday · checked Back:abcdefghij

  2. Source 2: Set Up Agent System of Record (Workday Administrator Guide) Workday · checked Back:ab

  3. Source 3: Concept: Agent Security (Workday Administrator Guide) Workday · checked Back:abc

  4. Source 4: Setup Considerations: Agent Security (Workday Administrator Guide) Workday · checked Back:ab

  5. Source 5: Concept: Workday Agent Gateway (Workday Administrator Guide) Workday · checked Back:ab

  6. Source 6: Why Blocks? Blocks.ai · checked Back:ab

  7. Source 7: What is Blocks? Blocks.ai · checked Back:ab

  8. Source 8: Authentication reference Blocks.ai · checked Back to text

  9. Source 9: Your company's private network Blocks.ai · checked Back:abc

  10. Source 10: Joining a Blocks network Blocks.ai · checked Back to text

  11. Source 11: Pricing Blocks.ai · checked Back:ab

  12. Source 12: Organizations and access Blocks.ai · checked Back to text

  13. Source 13: Agent 365 SDK frequently asked questions | Microsoft Learn Microsoft · checked Back to text

  14. Source 14: Microsoft Agent 365 SDK overview | Microsoft Learn Microsoft · checked Back to text

  15. Source 15: Agent 365 identity | Microsoft Learn Microsoft · checked Back:ab

  16. Source 16: Agent Registry in Microsoft 365 admin center - Microsoft 365 admin | Microsoft Learn Microsoft · checked Back to text

  17. Source 17: Bring your own (BYO) MCP server in Microsoft 365 admin center - Microsoft 365 admin | Microsoft Learn Microsoft · checked Back to text

  18. Source 18: Microsoft Agent 365 - Service Descriptions | Microsoft Learn Microsoft · checked Back to text

  19. Source 19: Agent Registry convergence with Microsoft Agent 365 | Microsoft Learn Microsoft · checked Back to text

  20. Source 20: Agent Fabric Overview Salesforce · checked Back:ab

  21. Source 21: Get Started with Agent Fabric Salesforce · checked Back to text

  22. Source 22: Register External Agents (Workday Administrator Guide) Workday · checked Back:abc

  23. Source 23: What's new in AI Gateway v3.4 - September 2026 release (ServiceNow Community, AI Control Tower articles) ServiceNow · checked Back to text

  24. Source 24: AI Control Tower - ServiceNow (product page) ServiceNow · checked Back:ab

  25. Source 25: AI Gateway Implementation Guide (ServiceNow Community, AI Control Tower articles) ServiceNow · checked Back to text

  26. Source 26: AI agent containment using kill switch protocol manually (ServiceNow product documentation, Australia release) ServiceNow · checked Back to text

  27. Source 27: Deactivate a managed AI agent (ServiceNow product documentation, Australia release) ServiceNow · checked Back to text

  28. Source 28: MCP server portals · Cloudflare One docs Cloudflare · checked Back:abc

  29. Source 29: AI Agents - Kong AI Gateway docs Kong · checked Back:ab

  30. Source 30: Agents in Catalog - Kong Docs Kong · checked Back to text

  31. Source 31: Kong AI Gateway product page Kong · checked Back to text

  32. Source 32: AI Gateway architecture - Kong Docs Kong · checked Back to text

  33. Source 33: Add AI agents manually (Okta Help Center) Okta · checked Back to text

  34. Source 34: Okta for AI Agents (product page) Okta · checked Back to text

  35. Source 35: Agent Gateway (Okta Help Center) Okta · checked Back to text

  36. Source 36: Okta brings first-class identity to AI agents with Agent SSO Okta · checked Back to text

  37. Source 37: Okta announces new innovations to secure AI agents at runtime and automate ongoing agent governance Okta · checked Back to text

  38. Source 38: AI agent resource connections (Okta Help Center) Okta · checked Back to text

  39. Source 39: Apps that support AI agent imports (Okta Help Center) Okta · checked Back to text

  40. Source 40: AI Observability | See Every Agent, Know What it Touches | Zenity Zenity · checked Back:ab

  41. Source 41: Coding and Personal Agents | Zenity Zenity · checked Back to text

  42. Source 42: AWS Marketplace: Zenity Zenity · checked Back to text

  43. Source 43: Runtime Boundaries | The Runtime Boundary for Autonomous AI | Zenity Zenity · checked Back to text

  44. Source 44: Overview - Amazon Bedrock AgentCore (Developer Guide) AWS · checked Back:ab

  45. Source 45: Provide identity and credential management for agent applications with Amazon Bedrock AgentCore Identity AWS · checked Back to text

  46. Source 46: AWS Agent Registry: Discover and manage agents, tools, and resources AWS · checked Back to text

  47. Source 47: HTTP passthrough targets - AgentCore Gateway AWS · checked Back to text

  48. Source 48: Sharing a registry across accounts with AWS RAM AWS · checked Back to text

  49. Source 49: ASOR API Documentation v1.2 (Workday/asor on GitHub) Workday · checked Back to text

  50. Source 50: Crew Studio CrewAI · checked Back to text

  51. Source 51: CrewAI AMP (platform docs introduction) CrewAI · checked Back:abc

  52. Source 52: Role-Based Access Control (RBAC) CrewAI · checked Back to text

  53. Source 53: Agent Repositories CrewAI · checked Back to text

  54. Source 54: Custom MCP Servers CrewAI · checked Back to text

  55. Source 55: A2A on AMP CrewAI · checked Back to text

  56. Source 56: Pricing | CrewAI CrewAI · checked Back to text

  57. Source 57: Agent Platform overview Google · checked Back:ab

  58. Source 58: Agent Gateway overview Google · checked Back:ab

  59. Source 59: Agent Identity overview Google · checked Back to text

  60. Source 60: Agent Registry overview Google · checked Back to text

  61. Source 61: AI Agent Builder | IBM watsonx Orchestrate IBM · checked Back to text

  62. Source 62: Welcome to IBM watsonx Orchestrate Agent Development Kit IBM · checked Back to text

  63. Source 63: Agent identity overview IBM · checked Back to text

  64. Source 64: AI Agent Control Plane | IBM watsonx Orchestrate IBM · checked Back to text

  65. Source 65: Partner A2A (Agent2Agent) agents IBM · checked Back to text

  66. Source 66: IBM watsonx Orchestrate IBM · checked Back to text

  67. Source 67: Regional availability and outbound IP addresses IBM · checked Back to text

  68. Source 68: Prerequisites for configuring agent identity IBM · checked Back to text

  69. Source 69: No-code agents with LangSmith Fleet LangChain · checked Back to text

  70. Source 70: LangSmith Deployment LangChain · checked Back:ab

  71. Source 71: Agent platform comparison LangChain · checked Back to text

  72. Source 72: LangSmith Deployment LangChain · checked Back to text

  73. Source 73: Remote MCP servers LangChain · checked Back to text

  74. Source 74: LangSmith: The Agent Engineering Platform LangChain · checked Back to text

  75. Source 75: LangSmith Plans and Pricing LangChain · checked Back to text

  76. Source 76: LangChain in n8n n8n · checked Back to text

  77. Source 77: AI Workflow Automation Platform - n8n n8n · checked Back:ab

  78. Source 78: Build and manage agents n8n · checked Back to text

  79. Source 79: MCP Client Tool n8n · checked Back to text

  80. Source 80: Choose how to use n8n n8n · checked Back to text

  81. Source 81: google/adk-python README (GitHub) github.com · checked Back to text

  82. Source 82: langchain-ai/langgraph README (GitHub) github.com · checked Back to text

  83. Source 83: Integrating with Model Context Protocol (MCP) - Keycloak keycloak.org · checked Back to text

  84. Source 84: Agent Discovery - A2A Protocol a2a-protocol.org · checked Back:ab

  85. Source 85: Designing MCP Gateway Uber's MCP Management Platform - Uber Blog uber.com · checked Back to text

  86. Source 86: Enterprise Features - A2A Protocol a2a-protocol.org · checked Back to text

  87. Source 87: Agent2Agent (A2A) Protocol Specification a2a-protocol.org · checked Back:ab

  88. Source 88: Workday Flex Credits | Workday US Workday · checked Back:ab

  89. Source 89: The Workday Agent System of Record Is Now Generally Available Workday · checked Back to text

  90. Source 90: Network requirements Blocks.ai · checked Back to text

  91. Source 91: Solutions: Agent sprawl Blocks.ai · checked Back to text

  92. Source 92: Solutions: Partner networks Blocks.ai · checked Back to text