How much leave do I have left?
Holly can answer from your current balance and link to the full record.
Holly uses each member's current permissions. API and MCP give a customer-selected agent a separate organisation-bound route.
Holly is on Standard · API and MCP reads are on every plan
Holly uses the signed-in member, a pinned Bedrock route and permission-projected tools. It does not save conversation history.
API and MCP agents use separate organisation credentials, provider terms and projections. Enabling one channel never grants authority to another.
Inspect the developer contractHolly can answer from your current balance and link to the full record.
Authorised people admins can see the permission-safe organisation view.
Holly prepares the request and shows the exact change for confirmation.
Holly projects from app permissions. MCP starts from approved fields and withholds, redacts or buckets selected values. Their safeguards share intent, not authority.
HollyHR freezes a validated proposal. Only that signed, short-lived payload can be confirmed after authority is checked again.
Holly currently supports explicit time-off confirmations. MCP writes retain separate Standard-plan, scope, server-enablement and host-confirmation gates.
API/MCP reads and bounded webhooks are on every plan. Approved writes are separate.
Assistance reduces lookup work. People decisions, privacy and provider due diligence remain human responsibilities.
Availability, data access, human control, compliance and cost in plain English.
Holly is HollyHR's in-app assistant. It answers approved questions within the member's current permissions and prepares supported actions for confirmation.
Holly uses Claude Sonnet 4.6 through a pinned Amazon Bedrock EU geographic profile with retention set to none, invocation logging unconfigured and no model fallback.
No. History stays in the browser session. Operational records contain outcomes, coarse usage and feedback—not questions, answers or tool results.
Yes. An authorised workspace admin can switch Holly off or on. Membership and permissions are still checked on every request.
Yes. API and MCP use a separate organisation credential. The chosen agent and provider retain their own terms, retention and processing choices.
Approved MCP tools cover people, time off and reference data. Positive projections withhold selected sensitive fields and bucket absence categories.
Holly can prepare supported time-off changes for confirmation. MCP writes use the same frozen write-intent domain with separate scopes and host confirmation.
No. Your organisation must assess access and the chosen provider's retention, training, region and subprocessors.
Holly is included with Standard. API and MCP reads are on every plan; other providers set their own charges.
Use Holly on Standard, or connect your agent through the documented API and MCP.
AI remains optional and workspace admins stay in control