Clear
Nothing needs a decision. The agent imports and carries on.
Aozumi for AI agents
Aozumi speaks MCP. Give an agent a key and it can take a GitHub repository from first inspection to a link your team can open, and it stops wherever a person needs to decide.
checkInspect the repo and review what the code can doOwner decision if the review finds somethingimportCreate the app from the signed inspection receiptsecretsStore encrypted values the app needs When needed.deployQueue a Production releasestatusPoll until the app is healthylogsRead a redacted diagnosis if it failed When needed.shareHand back an app-only linkEach tool result carries a next hint, so the agent follows the same path a careful person would. This is a typical run over https://aozumi.dev/mcp.
check{ "repository": "your-org/team-rota" }framework, inspectionReceipt, securityReviewnext Call import with inspectionReceipt. If securityReview.status is review, set safetyAccepted true after showing the findings. If blocked, stop.
The person reads the findings and says yes. Only then does the agent send safetyAccepted: true.
import{ "inspectionReceipt": "…", "safetyAccepted": true }applicationId, missingVariablesnext Call secrets with applicationId and values for: DATABASE_URL
secrets{ "applicationId": "…", "secrets": [{ "key": "DATABASE_URL", "value": "…" }] }stored: ["DATABASE_URL"]next Call deploy with applicationId.
deploy{ "applicationId": "…" }state: queuednext Poll status until status is Healthy, then call share.
status{ "applicationId": "…" }status, gatewayUrl, readyToSharenext Call share to mint the team link.
share{ "applicationId": "…", "duration": "week" }shareUrlnext Give teammates shareUrl. They open the app, not GitHub or Aozumi.
If a deploy fails, status says so and the agent calls logs for redacted, size-bounded output and Aozumi's diagnosis before trying again.
Agents are quick and confident. The review gate is where Aozumi slows them down on purpose.
Nothing needs a decision. The agent imports and carries on.
Install scripts, dynamic code, open CORS, private network calls and similar findings. Import is refused until safetyAccepted is true, and Aozumi records who accepted and for which commit.
The code asks for host-level permissions. No key, flag or retry gets past this; the repository has to change.
aozumi login are refused at /mcp.Any MCP client that supports remote HTTP servers with custom headers works.
Go to Profile → Agents, name the key after the client, and copy it. Put it in your environment as AOZUMI_AGENT_KEY.
In Claude Code:
claude mcp add --transport http aozumi https://aozumi.dev/mcp \
--header "X-API-Key: $AOZUMI_AGENT_KEY"
Or in a JSON config such as .mcp.json:
{
"mcpServers": {
"aozumi": {
"type": "http",
"url": "https://aozumi.dev/mcp",
"headers": {
"X-API-Key": "${AOZUMI_AGENT_KEY}"
}
}
}
}
Check my repository with Aozumi. Explain any blockers, required variables and review findings, and wait for my approval before importing, deploying or creating a share link.
Prefer raw JSON-RPC? The same call with curl:
export AOZUMI_AGENT_KEY="slt_your_agent_key"
curl -s https://aozumi.dev/mcp \
-H "content-type: application/json" \
-H "X-API-Key: $AOZUMI_AGENT_KEY" \
-d '{
"jsonrpc": "2.0",
"id": 2,
"method": "tools/call",
"params": {
"name": "check",
"arguments": { "repository": "your-org/your-repo" }
}
}'
By you, or by the agent you trust, with you still holding the keys.