Forest
Also known as: Forest Admin, forestadmin.com, Forest Workflows, Forest Assist, Forest MCP Server
Operational infrastructure for regulated fintech ops where human teams and AI agents run KYC, AML, payments and case workflows on the customer's own data, with the backend self hosted, bring your own model, an MCP server exposing Forest to outside agents, and a record level audit trail on every action.
Forest, formerly Forest Admin, is the operational infrastructure that regulated fintechs, banks and payment institutions run their back office on, and it is used by more than 500 regulated finance companies including Qonto, Swan, Belvo and Spendesk. A Forest backend runs inside the customer's own infrastructure and reads and writes directly to existing databases and APIs, Postgres, MongoDB, BigQuery, Snowflake and REST or GraphQL, with no copy layer, so data never leaves the customer's environment while Forest hosts the interface.
On that backbone, teams build multi step workflows for KYC and KYB onboarding, sanctions screening, transaction monitoring, AML investigations, regulator information requests and dispute handling on top of the providers they already use, with case inboxes, dispatch rules and SLAs, automated triggers on time, data change and webhook, and LLM steps where an agent takes a task.
Agents and humans share one permission model: an agent connects under a role that defines what it can read and trigger, high risk actions pause for human approval before they run, two person review applies, and every action by a human, agent, partner or workflow is written to a record level audit log with the model, inputs, reasoning trace and outcome, exportable as a regulator ready bundle or forwarded to Drata, Vanta, Datadog or a warehouse. Customers bring their own model, Claude, GPT, Mistral, Gemini or open source, and switch providers without breaking the audit.
Forest's MCP server exposes data, actions and workflows to outside agents such as Claude, n8n or a custom runtime under the same governance, and an API and native SDKs cover the backend. Security includes RBAC with custom roles, SSO and SAML, two factor authentication, and SCIM and IP whitelisting on the Enterprise plan, with SOC 2, HIPAA and GDPR named on the site. Pricing is public: a free self hosted Sandbox, Starter at $499 a month, Professional at $2,199 and Enterprise from $5,999, annual, priced per identity whether human or agent. Forest does not evaluate model output or run safety tests, and its agents do not drive a browser or desktop.
Vendor details
Canonical URL
https://forest.app
Category
Enterprise operations agent
Funding status
Series A. Forest Admin Inc., based in San Francisco, California; founded by Sandro Munda, with Maxence Bruyas listed as CEO and Xavier Gastaud as CFO. Over eight years the company evolved from an admin panel builder into an ops orchestration layer now running inside 500 plus regulated finance companies across Europe, Latam, and the US.
Company status
independent
Use cases & customers
Primary use cases
Target customers
Integrations
Sits on top of your existing stack and connects any database, any supplier portal, and any API, plus your own AI models and MCP servers, with a Connector Library that lets editors browse and request official MCP implementations from vendors such as Slack and Stripe directly in the Workflow Editor.
In practice
A compliance team runs KYC and KYB onboarding as one workflow where agents, automations and analysts work the same case, with high risk actions pausing for human approval and every call to providers such as Sumsub, Onfido or Persona recorded.
When a regulator sends an information request, an agent assembles case context across CRM, KYC and transaction systems and drafts a reply citing the source records, and the team exports the full action and reasoning trail filtered by agent, model or time window.
A company that will not let its data leave its own environment runs the Forest backend on its own infrastructure against Postgres or Snowflake, while Claude or another agent calls the same workflows through the MCP server under the roles the company sets.
Sources & related URLs
Related / legacy domains
Agentic Index coverage score
10.5 / 14 capabilities · 75%
| Integrations & Tool Calling | Full |
|---|---|
|
The platform reads and writes directly to the customer's databases and APIs with no copy layer, with automatic schema introspection across Postgres, MongoDB, BigQuery, Snowflake and REST or GraphQL APIs. SDKs in any language handle coded actions and custom logic. Workflows run on top of KYC and screening providers such as Sumsub, Onfido, Veriff, Persona and Trulioo, with every provider call recorded. An MCP client consumes any data source, and standard and custom MCP connectors come on every plan. Agents take authenticated action in outside systems through record level actions and workflow steps, and the SDK adds custom tools. SourceForest, forest.app and forest.app/pricingread 2026-09-06 |
|
| Workflow Orchestration | Full |
|
Multi step workflows carry approvals, escalation and human in the loop gates, and case inboxes come with dispatch rules, segments and SLAs. Named processes such as KYC and KYB onboarding, regulator information requests, sanctions screening, transaction monitoring and dispute handling run as workflows where agents, automations and humans work the same case. The platform also has a workflow builder, approvals and escalations, LLM steps in workflows and a dispatcher for smart routing and assignment. Workflows are native multi step automation with no external stitching. SourceForest, forest.app, forest.app/pricing and forest.app/blog/here-comes-the-new-forestread 2026-09-06 |
|
| Knowledge Grounding & RAG | Partial |
|
Agents ground on the customer's live records. For a regulator request, case context is assembled across CRM, KYC and transaction systems, drafts cite source records, and prior case matching handles repeat questions, all read directly from the customer's own datasources with no copy layer. This context is assembled per run over live operational data. There is no maintained retrieval structure, index, graph or embeddings layer over the customer's knowledge, and the data layer is the application's live database rather than a knowledge index. SourceForest, forest.appread 2026-09-06 |
|
| Human Oversight & Guardrails | Full |
|
High risk actions pause for human approval before they run. Each action's risk and approval requirement is configured, routine actions matching configured patterns can execute without review, and the approval chain is the same for agent initiated and human initiated work. Two person review and per jurisdiction scoping apply to agents, and approvals and escalations come on every plan. Forest runs this review and approve surface itself, enforced at the data layer, rather than relying on a gate the customer already owns. SourceForest, forest.app/platform/ai-governance-llm-ops and forest.appread 2026-09-06 |
|
| Security, Identity & Governance | Full |
|
Access control covers basic and advanced RBAC with custom roles, AI agent RBAC with scope and permissions, SSO and SAML from the Starter plan, SCIM provisioning and IP whitelist on Enterprise only, two factor authentication, and external user provisioning for partners and BPOs. Each agent connects under a role defining what it can read and trigger, enforced at the data layer. Forest names SOC 2, HIPAA and GDPR compliance without stating the SOC 2 type or auditor, and its Trust Center at trust.forest.app is a Vanta portal. SourceForest, forest.app/pricing, forest.app/platform/ai-governance-llm-ops and forest.appread 2026-09-06 |
|
| Observability & Auditability | Full |
|
Every agent action gets a record level audit entry recording the model used, the agent's identity, the input data and prompt, the reasoning trace where the model exposes it, tool calls, the action taken and the outcome. Each entry is written at the moment of the action against the record it touched, in the same trail and format as human actions. Regulator ready exports filter by agent, model, customer or time window and bundle the full action and reasoning trail, and events forward to Drata, Vanta, Sprinto, Secureframe, Datadog, Splunk or a warehouse by webhook or sync. AI agent audit trails and unlimited audit log retention come on every plan, with decision trace reasoning logs from Professional. Forest keeps this runtime trail itself to reconstruct why an agent acted, rather than relying on logs from the customer's systems. SourceForest, forest.app/platform/ai-governance-llm-ops and forest.app/pricingread 2026-09-06 |
|
| Memory & State Persistence | Not documented |
|
Case and record state persist in the customer's own database as the application's data model, and workflows hold their state across steps. There is no separate memory layer with its own scope and lifetime, and no per user, per team or per workflow memory. Forest does not say how the Forest Assist sidebar keeps session state. SourceForest, forest.app, forest.app/pricing and forest.app/platform/ai-governance-llm-opsread 2026-09-06 |
|
| Deployment & Data Residency | Full |
|
Forest hosts its UI and runs a backend on the customer's own infrastructure that reads and writes the datasources directly, so data never leaves the customer's environment. Every plan, including the free Sandbox, comes with a self hosted Forest Agent. The backend, business logic, permissions and audit trail are deployed in the customer's infrastructure, client hosted, and audit logs and decision traces stay in the customer's environment rather than the vendor's. The vendor hosted UI is a control surface and does not change where the data resides, and no region is given for it. SourceForest, forest.app/pricing and forest.appread 2026-09-06 |
|
| Prebuilt Agents / Templates / Packs | Partial |
|
Named process workflows cover KYC and KYB onboarding, regulator information requests, sanctions screening, transaction monitoring and dispute handling, each a configurable workflow on top of the providers the customer already uses. After mapping the customer's ecosystem, Forest's forward deployment team designs three to four workflows with the customer and takes them live over twelve weeks. These are patterns the customer assembles with Forest rather than packaged agents or templates a customer adopts as they stand, and there is no template library or catalog of adoptable agents. The ecosystem's AI Agents listing names third party agents such as Sphinx, Diligent.ai and Rulebase that run under Forest's governance, which makes it an integration catalog. SourceForest, forest.app and forest.app/platform/ai-governance-llm-opsread 2026-09-06 |
|
| Triggers & Channel Coverage | Full |
|
Automated triggers on time, data and webhook come from the Starter plan. A dispatcher handles smart routing and assignment alongside inbox and case management, and case inboxes carry dispatch rules, segments and SLAs. Intake arrives from a shared inbox, a partner portal or manual entry with deadlines attached, agents call the same workflows through the MCP server, and Forest can be embedded inside Zendesk, n8n and Claude. Work therefore reaches the agent through scheduled, data change and webhook events, an inbound queue with dispatch rules and several inbound channels. SourceForest, forest.app/pricing and forest.appread 2026-09-06 |
|
| Model Flexibility & Routing | Full |
|
The customer brings Claude, GPT or open source models, can switch providers without changing the audit shape or permission model, and has the model name recorded with each action. Anthropic, OpenAI, Mistral and Google Gemini power Forest Assist and the customer's agents, and bring your own model is part of what Forest calls open abstraction. Inference runs against the customer's approved model rather than one the vendor selects. SourceForest, forest.app/platform/ai-governance-llm-ops and forest.appread 2026-09-06 |
|
| APIs / SDKs / MCP Extensibility | Full |
|
Every plan includes API access for configuration and data, native SDK support (Node.js, Rails and others) for the self hosted Forest backend, and an MCP Server that exposes Forest to AI agents. The MCP server exposes data, schemas, actions and workflows to any authorized runtime, from Claude to open source models or custom built agents, so Claude and other agents can call Forest under the customer's governance. It runs inbound, letting an outside caller drive the platform, while a separate MCP client consumes outside data sources. SourceForest, forest.app/pricing, forest.app and forest.app/blog/here-comes-the-new-forestread 2026-09-06 |
|
| Testing, Debugging & Optimization | Partial |
|
Workflow analytics and optimization come from the Professional plan, giving a team a live metric on operations to read when tuning a workflow, and the decision trace reasoning log lets a reviewer see how an agent reached a decision after the fact. Forest offers no evaluation harness, scored test cases, release gate or controlled loop for measuring a change to the agent. It says it does not evaluate model output for accuracy or run safety tests, and it points customers to upstream tools. SourceForest, forest.app/pricing and forest.app/platform/ai-governance-llm-opsread 2026-09-06 |
|
| Browser / Computer-use | Not documented |
|
Forest's own agents and workflow steps reach outside systems through direct database access, APIs and MCP connectors, and the platform drives no browser, desktop or computer control. The ecosystem lists Sphinx, a partner's browser native agent that logs into compliance tools like an analyst, but it is an outside agent that calls Forest under its governance rather than a browser engine Forest operates. SourceForest, forest.app/platform/ai-governance-llm-ops and forest.appread 2026-09-06 |
|
The Agentic Index coverage score grades every vendor Full, Partial or Not documented against the same 14 buyer facing capabilities, from public evidence only. Each capability links to how all vendors in the index score on it. How this evidence is graded
Recent platform changes
Forest's September release lets Claude, Dust and other MCP clients start Forest Workflows through its MCP server. Decision steps now offer Automatic (Deterministic) execution, evaluating conditions against preceding Get Data steps without model interpretation during execution. Manual, AI assisted and Full AI modes remain available for decisions that need interpretation.
Bears on: MCP / tool calling / API
View sourceForest Admin rebranded to Forest and launched a new operational infrastructure platform. Key additions include an MCP Server that allows AI agents like Claude to call Forest under strict governance, native multi-step workflow automation, and a new Zendesk application for unifying support and operations data.
Bears on: MCP / tool calling / API
View sourceForest Admin released several updates to its Workflows, including the ability to save workflows as drafts and restore previous versions from the editor. The update also introduces deterministic 'Get Data' and 'Update Data' steps, a new 'Guidance Task' step that allows the AI to draft text mid-workflow, and automated escalations without human triggers.
Bears on: Agent capability
View sourcePricing
Free Sandbox; Starter $499/month (annual)
Annual plans priced per identity (humans, AI agents and external users count the same) with monthly audit event allotments and per event overage
Included quota
Open source SDK is free to self host; managed tiers are quoted.
Cost watchouts
The data plane runs in your own infrastructure, so hosting and compute are your cost; enterprise pricing scales with seats and usage.
Variable cost rationale
Because the data plane runs in your own infrastructure, compute is your own cost, and managed tiers scale with seats and workflow usage, though the open source path caps external spend.
Overage / add-ons
Managed tiers scale with seats and usage.
Sales call required
Mixed (some tiers require a call)
Free / trial
Free self hosted Sandbox for 2 users with no card; free trial on Starter
Lowest paid plan
Starter, $499 per month on an annual term, 7 users included then $60 a user
Key ambiguities
Plans are published per identity, but Enterprise is priced from $5,999 a month, so the final Enterprise figure depends on the contract.
Related vendors
- 11th Estate — Agentic platform whose AI engine scans markets, matches an…
- Adopt AI — AI CPA firm whose agents run reconciliations, close, AP and AR, and…
- Aera Technology — Decision intelligence platform where an always on agent executes…
- Akro AI — On premise operational intelligence that automates document heavy…
- alfred_ — AI executive assistant that triages the inbox overnight and scores…
- Alloy.ai — Commerce intelligence system for consumer brands that unifies four…
Alternatives to Forest
The closest documented capability profiles to Forest among enterprise operations agents tracked by Agentic Index, ordered by similarity on the same 14 point evidence the rankings use. No vendor pays for placement.
- Parashift11.0 / 14Fuller documented coverage on Prebuilt Agents, Templates & Packs
- Beam AI12.0 / 14Fuller documented coverage on Knowledge Grounding & RAG and Prebuilt Agents, Templates & Packs
- Glean12.0 / 14Adds documented Memory & State Persistence
- Instabase11.0 / 14Fuller documented coverage on Prebuilt Agents, Templates & Packs and Testing, Debugging & Optimization
- Rapta9.0 / 14A lighter documented profile than Forest
- Serval11.0 / 14Fuller documented coverage on Knowledge Grounding & RAG and Prebuilt Agents, Templates & Packs
Similarity is computed from each vendor's Agentic Index coverage score evidence, axis by axis, not from the totals. How this evidence is graded