Operator only / keep keys outside agent context

Delegate the job.
Keep the credential.

Use a provisioned XGuard operator key and a provider key limited to the intended resource. Need credits? Open operator checkout.

Keys are held only in this page's memory and sent to the canonical API. They are never saved in browser storage or included in the agent request.

Your agent request

Create a capability to see the exact request.
The target, method and resource are derived from the explicit operation. Inspect the request before executing a write.