![]()
Apollo GraphQL Introduces GraphOS Agent Services, Giving AI Agents Governed Access to Enterprise APIs and Systems
PR Newswire
SAN FRANCISCO, Oct. 7, 2026
New services extend Apollo’s platform to AI agents, helping companies control what agents can find and do across existing systems; GraphOS MCP Server gives teams a full suite of agent-ready tools for building and managing the graph
Intuit is piloting GraphOS Agent Services and joins American Airlines, Block, and Expedia Group at Apollo Summit 2026 to share how Apollo powers their AI agents
SAN FRANCISCO, Oct. 7, 2026 /PRNewswire/ — Apollo GraphQL, the graph-based API orchestration leader, today introduced Apollo GraphOS® Agent Services, giving AI agents secure, governed and auditable access to an enterprise’s systems and APIs. Built on GraphOS, Apollo’s platform for connecting and orchestrating enterprise APIs, Agent Services extends that infrastructure to AI agents, so companies can control what each agent can access and do. GraphOS today orchestrates more than 2 trillion operations monthly after more than a decade of production use. Apollo also expanded the GraphOS MCP Server into a full suite of agent-ready tools for building and managing the graph. Both were unveiled this week at Apollo Summit, the world’s largest GraphQL event, in San Francisco.

Why Now: Your APIs Weren’t Built for Agents
Companies adopting AI agents face a common challenge: agents need to call the same APIs that already run the business, but those APIs weren’t built with agents in mind. The rules about what’s safe to return usually live in a developer’s judgment, not in the API itself, and agents don’t have access to that judgement. Those rules need to be made explicit and hold every time, regardless of what the AI model decides. That takes a domain model – a clear, governed map of a company’s systems and APIs, how they relate, and who or what is allowed to see and interact with them.
Most enterprise systems don’t have one domain model built for this purpose today. A single request for a customer’s name or email often returns far more than what was asked for – sensitive fields like personal information, billing details, or internal notes an agent shouldn’t be able to access. Each extra field adds token cost. And any field that shouldn’t have been exposed is now sitting in a chat window, a log, or a large language model’s (LLM’s) context window, outside anyone’s control.
Most enterprise APIs were built for trusted developers, and that model breaks down with autonomous agents. Agents need their own identity, whether they act on someone’s behalf or operate autonomously, and a permissioning model built specifically for how they access systems.
Gartner® projects that, “through 2028, at least 80% of unauthorized AI agent transactions will be caused by internal violations of enterprise policies concerning information oversharing, unacceptable use or misguided AI behavior rather than from malicious attacks.”1 If agents can access a given field, they will, and what they’ll do with it can’t be predicted with accuracy. Deterministic access rules are the only way to limit that risk.
Introducing GraphOS Agent Services
GraphOS Agent Services sits between AI agents and an enterprise’s systems. It translates each agent request into the right API calls, brokers the credentials for each one, and enforces controls on what a human or agent is allowed to see or do, field by field, with no LLM in the judgement loop. It does this through a new set of capabilities: search, so agents can find the right data and tools; identity, to manage credentials for an agent acting autonomously or on behalf of a human; policy, so companies can control exactly what each agent can see and do, down to an individual field; and audit, so there is a precise log of everything that happened for observability, insights, and compliance. With these new services, GraphOS provides one governed system in place of the ad hoc access most agents run on today.
“Enterprises need to adapt their APIs for AI agents,” said Matt DeBergalis, CEO & co-founder, Apollo GraphQL. “They need to do it scalably, securely, and sustainably, with a common architecture that supports customer-facing AI, always-on business agents, and traditional software. GraphOS Agent Services adds the context they need, and provides a complete domain model for AI. It’s the essential next step.”
Intuit is live in production with GraphOS and piloting Agent Services in preview, running an intelligent business on top of real-time data: “Our marketing team used to wait weeks to learn which campaigns were working and weeks more to turn around a change, even when the fix was obvious. Every day of delay cost us real money,” said Chris Miller, Head of AI Marketing Futures at Intuit. “Now our agents can analyze spend against results and propose a change in real time, because GraphOS Agent Services gives them access to only what they need and keeps an audit trail of everything. That’s the only way we’d trust giving them this kind of authority.”
Continued GraphOS Platform Investment
Apollo also announced continued platform investment to improve graph performance and help teams use agents to build and operate their graphs. The biggest update is in the core of how operations are processed: GraphOS Router 3.0, now in preview, introduces a new request pipeline and query planner that dramatically improve performance and reduce resource consumption. On typical workloads, Router 3.0 will spend 95% less time on query planning compared to Router 2.0. The improvement in the most complex graphs is even larger: more than 300x improvement on planning time and up to 97% less memory usage.
The GraphOS MCP Server has also grown into a full suite of agent-ready tools for building and managing the graph. The GraphOS Platform API is how teams automate GraphOS from their own code, from publishing schemas and running checks to managing variants and reading insights. The GraphOS MCP Server now exposes more of that API to agents, so those same actions can be driven in natural language instead of custom code. An agent can read a live graph and answer questions like “Is my graph healthy?” using the launch history, composition errors, lint, and metrics – the same diagnostics a platform engineer would run by hand, in minutes instead of an afternoon.
Two more updates support agents operating the graph itself. Apollo’s library of Skills, which teaches agents Apollo’s own expertise in Federation, Connectors, the Router, and much more, has grown to 14 skills with more than 47,000 installs – proof teams are already putting agents to work inside their GraphQL workflows. And the GraphOS Operator for Kubernetes can now centrally deploy and manage the Apollo MCP Server alongside other GraphOS infrastructure, simplifying operations for platform teams.
A full rundown of all new features and enhancements across the GraphOS platform, including Apollo Connectors, Apollo Client, client libraries, security, and deployment tooling, is available on the Apollo blog.
Join the conversation at Apollo Summit 2026
Apollo Summit, the world’s largest GraphQL event, is underway this week in San Francisco at The Midway, running Oct 6-8 with 30+ sessions from teams proving that an API platform can, and should, become an AI platform. Xolvio and 10kR are featured sponsors, alongside community partners CustomInk and DevITJobs.com. Today’s announcements are featured in the Summit keynote delivered by DeBergalis, live-streamed beginning at 9 a.m. PT. As a member of the Agentic AI Foundation, Apollo will also host a fireside chat between DeBergalis and Angie Jones on agentic standards and interoperability, later in the week. Join the conversation on LinkedIn and X by following #ApolloSummit.
1 Gartner, Market Guide for Guardian Agents, By Avivah Litan, et al., Feb. 25, 2026. GARTNER is a registered trademark and service mark of Gartner, Inc. and/or its affiliates in the U.S. and internationally and is used herein with permission. All rights reserved.
About Apollo GraphQL
Apollo GraphQL helps developers build better software faster with a declarative, graph-based approach to API orchestration. With over 1 billion downloads of its open-source software, Apollo has become the standard for working with GraphQL – an open standard supported by The GraphQL Foundation, part of The Linux Foundation – and powers the most innovative brands today. The Apollo GraphOS® platform provides the infrastructure to unify APIs into a composable graph, enabling teams to connect AI agents, query data from anywhere, and ship new experiences with speed and confidence. Backed by Andreessen Horowitz, Insight Partners, Matrix Partners, and Trinity Ventures, Apollo is headquartered in San Francisco. Learn more at: www.apollographql.com.
Jennifer Tyrseck
communications@apollographql.com
View original content to download multimedia:https://www.prnewswire.com/news-releases/apollo-graphql-introduces-graphos-agent-services-giving-ai-agents-governed-access-to-enterprise-apis-and-systems-302900890.html
SOURCE Apollo GraphQL
