TOOKLI

AI Agents That Work With Your Business

Design intelligent agents and automation workflows that connect your data, applications and business processes.

The problem

Most agent projects fail on the boring parts

The model is rarely the hard part. What breaks projects is permissions, integration with systems that were never designed for it, no way to tell whether the agent is doing well, and no record of what it did. An agent that cannot be audited cannot be deployed.

Our approach

An agent is a system, not a prompt

We treat an agent as production software: scoped tools, explicit permissions, a human approval step wherever the action carries cost, an evaluation set that runs in CI, and logging that answers "why did it do that" months later.

What we build

Capabilities

  • AI Assistants

    Conversational interfaces over your own content, scoped to what the signed-in user is allowed to see.

  • AI Agents

    Systems that plan a short sequence of steps and call tools to complete a defined task.

  • Agentic Workflows

    Multi-step processes where an agent handles the judgement and deterministic code handles the rest.

  • RAG Knowledge Assistants

    Retrieval over your documents with citations, so every answer can be traced to a source.

  • Customer Support Automation

    Draft replies, classification and routing, with a human sending anything that matters.

  • Internal Operations Automation

    The repetitive coordination work that currently lives in inboxes and spreadsheets.

  • Document Processing

    Extraction and validation from PDFs, forms and scans, with confidence thresholds.

  • Data Analysis Agents

    Natural-language questions against a modelled dataset, answered with the query shown.

  • Sales Automation

    Lead enrichment, qualification drafts and CRM hygiene — proposed, not sent.

  • HR Automation

    Screening assistance and workflow routing, with hiring decisions left to people.

  • IT Support Automation

    Ticket triage, knowledge-base answers and routine request handling.

  • Workflow Orchestration

    The glue that sequences all of the above and knows what to do when a step fails.

Architecture

How it fits together

How a TOOKLI agent is wired

Every arrow is a place where something can go wrong, so every arrow is a place we instrument. Note where the human sits — before the action, not after it.

  1. 01UserAuthenticated, with their own permissions
  2. 02AI AgentScoped instructions and a fixed tool set
  3. 03Tools / APIsNarrow, typed, individually permissioned
  4. 04Business systemsCRM, ERP, ticketing, storage
  5. 05DataRetrieved under the user's access rights
  6. 06Human approvalRequired for anything costly or irreversible
  7. 07ActionExecuted only after approval
  8. 08MonitoringLogs, evaluation, cost and drift
Integrations

Systems we build against

Platforms and services TOOKLI actively works with on client engagements.

Microsoft

  • Microsoft 365
  • SharePoint
  • Teams
  • Power Platform
  • Power Automate
  • Power Apps
  • Copilot Studio
  • Azure AI

Model providers

  • OpenAI
  • Anthropic
  • Google Gemini
  • Azure OpenAI

Business systems

  • Salesforce
  • HubSpot
  • Zendesk
  • Slack

Data

  • PostgreSQL
  • SQL Server
  • REST APIs
  • Webhooks

This list reflects systems we integrate with, not partnerships, resale agreements or certifications. If something you rely on is missing, ask — we will tell you honestly whether we have used it.

Use cases

What this looks like in practice

Examples of what we can build for each sector. Work we have actually delivered appears in our case studies, with named outcomes.

  • Healthcare

    Document and workflow assistance

    Summarising and routing administrative documents, with clinical decisions left entirely to clinicians.

  • Real estate

    Lead qualification and property search

    Enriching enquiries and matching them to listings, so agents spend their time on qualified conversations.

  • Construction

    Document processing and project reporting

    Extracting data from site documents and assembling the weekly report from systems that already hold the facts.

  • Finance

    Internal document and reporting workflows

    Reconciliation support and reporting drafts for internal review. No customer-facing financial advice.

  • E-commerce

    Customer support and product assistance

    Drafted responses and product questions answered from your own catalogue and policies.

  • HR

    Screening assistance and workflow automation

    Structured summaries of applications against a written bar. A person makes every decision.

  • Operations

    Report generation and process automation

    The recurring assembly work that currently occupies a competent person for a day a week.

How we work

Delivery process

  1. 01

    Discover

    What the process actually is today, who touches it, and what it costs.

  2. 02

    Map the workflow

    Every step, decision and exception written down before any of it is automated.

  3. 03

    Identify AI opportunities

    Which steps genuinely need judgement. The rest is ordinary software, and cheaper.

  4. 04

    Design the agent architecture

    Tools, permissions, approval points and failure behaviour, in writing.

  5. 05

    Connect tools and data

    Narrow, typed integrations that inherit the user's existing access rights.

  6. 06

    Build

    Deterministic code wherever possible; the model only where it earns its place.

  7. 07

    Evaluate

    A test set with a measured baseline before anything reaches a real user.

  8. 08

    Deploy

    Behind a flag, to a small group, with a rollback that has been rehearsed.

  9. 09

    Monitor

    Quality, cost, latency and drift — with alerts, not dashboards nobody opens.

  10. 10

    Improve

    Feedback from real use, fed back into the evaluation set.

Security and reliability

How we keep it safe and accountable

Engineering practices, not certifications. TOOKLI holds no security certifications and does not claim any.

  • Access control

    The agent acts with the permissions of the person using it, never with a service account that can read everything. If a user cannot open a document, retrieval cannot either.

  • Data isolation

    Tenant and department boundaries are enforced at the data layer, not in the prompt. A prompt is guidance; a row-level policy is a rule.

  • Human approval

    Any action that spends money, contacts a customer or changes a record of consequence is proposed for approval rather than executed.

  • Prompt injection protection

    Retrieved content is treated as untrusted input. Tools validate their own arguments, and instructions found inside a document never widen what the agent is allowed to do.

  • Sensitive data handling

    We minimise what is sent to a model, redact where we can, and document exactly which provider processes what — which matters under GDPR and Canadian privacy law.

  • Logging and auditability

    Every tool call, retrieval and approval is recorded, so "why did it do that" has an answer months later.

  • Evaluation

    An evaluation set with a measured baseline, run in CI. A prompt change that degrades quality fails the build like any other regression.

  • Monitoring

    Quality, cost, latency and refusal rates tracked in production, because model behaviour changes underneath you.

Common questions

Related services

  • Business & Workflow Automation

    Business process, document, data and system automation. We combine ordinary software workflows with AI only where judgement is actually needed.

    Learn more
  • AI Integration

    Bring AI capabilities into your existing applications — search, extraction, classification, summarisation and assistants — without building or training models yourself.

    Learn more
  • Enterprise AI & Knowledge Systems

    Secure enterprise knowledge assistants, RAG systems and internal AI search where access control is enforced at retrieval, not requested in a prompt.

    Learn more

Find an AI workflow worth automating

Bring us a process that eats time. We will tell you honestly whether it is an AI problem, an automation problem, or a broken process that no software will fix.

Book a working session