Module 7 — The AI Agent: Using It · Lesson 7.3
What the Agent Can Actually Do
A tour of the capability groups, and the rule that decides whether a tool is available at all
~14 min
What you'll learn
- Name the main capability groups and what each covers
- Explain why a tool group may be entirely absent from your agent
- Use the agent for web research as well as workspace work
- Recognize the honest limits, and what to do at each one
People under-use the agent in a specific way: they ask it about tasks, discover that works, and never find out it can read their mail, run a report, search the web, or write to Jira. The toolkit is much wider than the first conversation suggests, and knowing roughly what is in it is what turns it from a task assistant into an operator.
The core groups
Task and project management: create, update, move, assign, bulk-edit, manage sprints, dependencies, statuses and swimlanes. This is the group everyone finds.
Clients and deals: the CRM and the pipeline — reading accounts, updating deals, managing contacts, proposing and running follow-up sequences.
Chat and discussions: workspace chat, discussion threads, notifications, message templates.
Email and calendar: connected mailboxes, calendars, scheduled and recurring email.
Reports and analytics: generating reports, portfolio data, time tracking, capacity, audit search.
Knowledge and files: the knowledge base, project files, templates.
Planning: sprint planning, capacity, horizons, estimation.
Developer and GitHub: repos, pull requests, the dev surfaces.
Workflows and automations: automation rules, recurring tasks, background jobs.
Finance: accounting integration — invoices, transactions, ledger.
Administration: governance, SLA policies, support, the undo stack.
The connection rule
Here is the thing that explains most 'why can't it do that' questions.
Tools for a provider you have not connected are not offered to the agent at all. They are not present-but-failing; they are absent. If Gmail is not connected, the agent has no Gmail tools and will tell you it cannot read your mail — which is correct, and which changes the moment you connect it.
The same applies to opt-in features. Community app tools, the remote browser, exec meetings and several others are off by default, and while they are off the corresponding tools are stripped rather than merely refused. A workspace that has not opted in sees an agent that behaves as though the feature does not exist, which is deliberate: nobody should be shown a capability nobody asked for.
So when the agent says it cannot do something, the first question is not 'how do I phrase this better' — it is 'is the thing connected or enabled?'.
Beyond the workspace
The agent has web search and can read web pages. These are genuinely non-redundant capabilities: search finds things, page reading gets the actual content of a specific URL.
That makes 'research this company before the call and put a summary in the deal notes' a single request rather than three tools and a copy-paste.
It can also generate images and other media, and it can produce charts and diagrams inline when a picture is the clearer answer. Asking for a chart of something in your workspace is a reasonable request rather than a stretch.
What it genuinely cannot do
Being precise about limits is more useful than being encouraging about capabilities.
It cannot see systems you have not connected. There is no inference from absence: a project living in a tool you have not linked simply is not visible.
It cannot exceed the governance you have set. At safe autonomy the risky tools are removed from its toolset entirely, so it is not choosing to decline — it has nothing to decline with.
It cannot cross the workspace boundary. Another workspace's data is not visible even to you-as-the-same-account.
It cannot unsend. Anything that has left the building is gone, which is exactly why external sends default to requiring your approval.
And it cannot make your decisions. It can surface the trade-off, draft the options and tell you what the charter says. Which one you pick is not a capability question.
Finding out what yours has
The fastest way to learn your own agent's reach is to ask it. 'What can you do with our Google Workspace connection?' produces an accurate answer for your workspace, which a written list cannot, because the answer depends on what you have connected and enabled.
One caveat worth knowing: the agent occasionally under-reports its own capabilities — having a tool is not the same as knowing you have it. If it declines something you are fairly confident it can do, naming the capability directly usually resolves it.
Map your agent's reach
- 1
Ask it what it can do with each connection
'What can you do with our calendar connection?' The answer is specific to your workspace, which no written list can be.
- 2
'Summarize this week's overdue work and draft an update for the client.' Two capability groups in one request.
- 3
'Look up this company and add a summary to the deal notes.' Web search plus a workspace write.
- 4
Check what is connected before concluding it cannot
Settings → Integrations. Unconnected providers have their tools stripped entirely, not merely failing.
What to watch
- Capability-group usage breadth
- How many distinct capability areas your workspace actually asks the agent to touch.
- Healthy signal: Growing past tasks. A workspace using only task tools is using a fraction of what it is paying for.
- Connection coverage
- How many of the systems your team actually uses are connected.
- Healthy signal: The ones that hold commitments — mail and calendar first. Each unconnected system is a blind spot the agent cannot reason around.
Key takeaways
- ·The toolkit spans tasks, CRM, chat, mail, calendar, dev, reports, planning, knowledge, finance and admin.
- ·Tools for unconnected providers and disabled features are STRIPPED, not merely refused.
- ·'It can't do that' is usually a connection or opt-in question, not a phrasing question.
- ·Web search and page reading make outside research part of a single request.
- ·Real limits: unconnected systems, your governance settings, the workspace boundary, and unsending.
Next: checking its work — the ledger, undo, and how to tell what actually happened.