SUVENRAAI Works Within Your Rules
HelpDID documentDID

Agent connections

Connect an Agent to SUVENRA

Give an Agent one encrypted task channel for signed authorizations. SUVENRA delivers the task without giving the server the decryption key.
End-to-end encryptedTasks, room capabilities, and delivery keys remain encrypted

Quick start

New here? Follow these steps

Connect once, then each task only needs authorization and a final review
01
What to do now

Sign in

Sign inThe Agent name plus DID or HTTPS URL identifies the intended recipient. It does not connect the Agent by itself; the Agent must still install the connector configuration.Read full guidance

Sign in before creating a persistent Agent connection

Sign in
A

First connection · once only

  1. 01
    You do this

    Create a connection

    Create a connectionThe Agent name plus DID or HTTPS URL identifies the intended recipient. It does not connect the Agent by itself; the Agent must still install the connector configuration.Read full guidance

    Sign in before creating a persistent Agent connection

    Done whenAgent setup
  2. 02
    You do this

    Agent setup

    Agent setupAn encrypted pull endpoint for signed tasks. The Agent must install its credentials and check this endpoint; creating a SUVENRA connection alone does not make the Agent receive anything.Read full guidance

    Give this setup link or configuration file to the Agent once. It contains the Agent capability and task-channel key.

    Done whenActive
  3. 03
    You do this

    Send test

    Send testChecks the signature, controller, service namespace, scope, expiry, required fields, and revocation status. It does not prove that an Agent's factual claims are true.Read full guidance

    Send and open a test to verify this connector

    Done whenAgent connector verified
B

For every task

  1. 04
    You do this

    Authorize

    AuthorizeAn explicit allowlist for the Agent. Any action that is not selected remains outside the authorization.Read full guidance

    Describe the task, allowed actions, required evidence, and expiry, then sign the authorization

    Done whenDelivered to Agent
  2. 05
    Agent does this

    Open authorized task

    Open authorized taskThe handoff space where an Agent accepts, requests changes, declines, or returns evidence. Owner, Agent, and verification links have different permissions.Read full guidance

    Work only within this signed authorization. Return the result and supporting evidence for human review; the authorization is not final approval.

    Done whenAn Agent result is ready for review
  3. 06
    You do this

    Review returned work

    Review returned workA person accepts or rejects the returned work. SUVENRA binds that decision, the original authorization, and the evidence into a signed outcome receipt.Read full guidance

    Compare the returned work with the signed task and required evidence, then record your decision.

    Done whenA result decision was recorded

Create a connection

Create a connectionThe Agent name plus DID or HTTPS URL identifies the intended recipient. It does not connect the Agent by itself; the Agent must still install the connector configuration.Read full guidance

Pair once, then deliver future authorizations directly to this Agent.

An Agent name or address identifies the Agent. It does not connect the Agent or make SUVENRA enforcement active.

Connected Agents

0 Agent · 0 Deliveries

SUVENRA Agent Protocol 1.4

One integration, reusable authorization

One integration, reusable authorizationAn encrypted pull endpoint for signed tasks. The Agent must install its credentials and check this endpoint; creating a SUVENRA connection alone does not make the Agent receive anything.Read full guidance
The Agent checks its encrypted task channel, verifies each signed grant, then opens only the task room it was authorized to use.
Developer Center
  1. 1Create a connectionCreate a connectionThe Agent name plus DID or HTTPS URL identifies the intended recipient. It does not connect the Agent by itself; the Agent must still install the connector configuration.Read full guidance
  2. 2Agent task channelAgent task channelAn encrypted pull endpoint for signed tasks. The Agent must install its credentials and check this endpoint; creating a SUVENRA connection alone does not make the Agent receive anything.Read full guidance
  3. 3VerifyVerifyChecks the signature, controller, service namespace, scope, expiry, required fields, and revocation status. It does not prove that an Agent's factual claims are true.Read full guidance
  4. 4Open authorized taskOpen authorized taskThe handoff space where an Agent accepts, requests changes, declines, or returns evidence. Owner, Agent, and verification links have different permissions.Read full guidance