I found an application simply called "Agent" requesting screen access on my Mac. It appears to be Veriato software for employee activity monitoring, and I'm trying to understand what it can actually collect. Can it record keystrokes, screenshots, applications, websites, or live screen activity? If I deny or remove its permissions on macOS, does that meaningfully stop it, or can company device-management tools restore them? Also, how can Windows users verify whether similar monitoring is installed? I'm looking for a practical explanation rather than advice to immediately change jobs.
4 Answers
Before assuming it is authorized surveillance, ask your IT or security team what “Agent” is and what information it is configured to collect. An unexpected monitoring tool could also be a deployment mistake or a security incident. Don’t try to disable, uninstall, or tamper with it on a company device: management systems may restore it or generate an alert, and bypassing policy could lead to disciplinary action. If you need clarity about notice or privacy rights, check the company policy and applicable local employment rules.
On a managed Mac, denying a permission may not be permanent. Mobile-device-management and PPPC profiles can preapprove privacy permissions, make controls unavailable, or cause settings to return after a policy refresh. Check System Settings for device-management or configuration profiles; a terminal profile listing can also show which privacy permissions are centrally assigned. If a permission can be changed and stays changed, it may not be managed, but that still doesn’t establish that the agent is harmless.
Veriato deployments can be configured to collect things such as application and website usage, screenshots, mouse and keyboard activity, and behavioral or security alerts. The exact features depend on the modules and policies your employer enabled, so the product’s existence alone doesn’t prove that every keystroke or a continuous video feed is being captured. Treat a company-managed device as potentially monitored and keep personal activity on a separate device.
The safest practical assumption is that anything done on company equipment can be visible to the employer. Don’t use the work computer for personal accounts, private browsing, or sensitive conversations. On Windows, Task Manager or installed-program lists may reveal a process or service, but they cannot prove that monitoring is absent because agents can run as services, use management policies, or collect data intermittently.
A network monitor may show connections, but lack of an obvious large upload does not rule out periodic screenshots, local buffering, or collection that is limited to certain triggers.

Some organizations use screen capture only for particular users, applications, or events rather than recording everyone continuously. The configuration matters.