Naming note: despite sharing the name "Security Model," this is unrelated to the Branch Types / Security Models feature under My Account (Workspace) β that one governs sub-organizations; this one governs AI access limits. Don't conflate the two when writing or answering questions. Placement note: the org-wide default system prompt, auto-model-selection toggle, and required opening/closing text settings all live at the bottom of this same Security Models tab, not on their own tab β see How do I configure general AI settings?
An AI access policy (what this tab calls a "security model") is a named bundle of limits and permissions you can assign to one or more roles:
- Max Tokens Per Request and Max Context Length β per-call limits.
- Max Tokens Per Day and Max Requests Per Day β daily caps.
- Allowed Providers and Allowed Models β restrict which connected providers/models this policy's members can actually use.
- Allow Image Upload and Allow MCP Tools β feature-level permissions.
- Assigned Roles β which Security Roles this policy applies to.
A member's actual limits come from whichever policy is assigned to their role(s), the same way rights and permissions cascade elsewhere in Workspace settings.
Related articles
Other guides that answer questions close to this one.
How to Configure General AI Settings
Note: despite the name, this isn't a top-level tab β it's a card at the bottom of Security Models, easy to miss if you only scroll through the policy list above it. Set the organization's default AI system prompt,β¦
How to Create an AI Access Policy
Define usage limits and provider/model access for a group of roles. Before you start The Manage AI Settings right. Steps 1. Go to Settings β Artificial Intelligence β Security Models. 2. Click Add Policy. 3. Fill in: -β¦
AI Providers Explained
An AI provider is a connection to a model vendor β OpenAI, Anthropic, Google (Gemini), Mistral, Cohere, OpenRouter, DeepSeek, xAI (Grok), Meta (Llama), Perplexity, Hugging Face, or a Custom OpenAI-compatible endpoint.β¦
How to Create an AI Sales Agent
Cross-reference: AI Sales Agents are what you assign to a web chat integration's AI channel β see How to Customize Your Web Chat Widget in Communications β Chat. Create a named AI persona your organization can assign toβ¦
What You Can Do with the AI Assistant
AI Assistant (nav icon, top navigation bar) is a chat window you can open at any time to ask questions and get answers, without leaving whatever else you're doing in KamoCRM. It opens as a floating window (like Chat orβ¦