Accenture moves the AI agent trust boundary down into the Oracle database
A self-reported deployment from a vendor-sponsored event: database-enforced agent access control is worth studying, but the performance numbers are unverified.
Original event 2026-09-23
Accenture's Oracle practice constrains what AI agents can read at the database rather than the application layer, serving roughly 40 agents.
The team runs an MCP server connected to more than 925,000 documents across 27 Oracle product namespaces. Agents hold different authorization levels; policies are defined in SQL and enforced by the database on every query, regardless of what SQL the agent constructs.
The team says it has tested scale to 300 simultaneous queries, with most results returned in 15 seconds or less; that figure is self-reported and independently unverified. The case comes from an interview at an Oracle-sponsored event where theCUBE is a paid media partner, so readers should treat performance and effect claims as first-party statements.