Clawvisor website screenshot

Clawvisor

Clawvisor is the authorization layer for AI agents — a Y Combinator (Spring 2026) security gateway that sits between an AI agent and the tools it acts on (Gmail, Calendar, Drive, Contacts, GitHub, Slack, Notion, Linear, Stripe, Twilio, iMessage). Agents never hold downstream credentials: they declare a task describing their purpose and the service/action pairs they need, the user approves that scope once, and Clawvisor enforces restrictions, task scope, and LLM intent verification on every request before injecting vaulted, short-lived credentials, executing through an adapter, and writing a full audit trail. It ships open-core as a self-hostable Go daemon with a CLI, web dashboard, TUI, and an OAuth 2.1 MCP server, plus an official Claude Code plugin. Agents integrate over a plain HTTP gateway or MCP — no SDK or agent-code changes required.

Clawvisor publishes 5 APIs on the APIs.io network, including Auth API, Catalog API, Gateway API, and 2 more. Tagged areas include AI Agents, Authorization, Security, Identity, and Access Control.

The Clawvisor catalog on APIs.io includes 1 event-driven AsyncAPI specification.

Clawvisor’s developer surface includes documentation, API reference, getting-started guide, support, pricing, signup flow, authentication, and 18 more developer resources.

51.2/100 developing ▬ flat Agent 75/100 agent native Full breakdown ↓
scored 2026-07-27 · rubric v0.5
AccessSelf serve
5 APIs 1 MCP Servers
AI AgentsAuthorizationSecurityIdentityAccess ControlMCPCredential ManagementGovernanceDeveloper Tools

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-27 · rubric v0.5
Composite quality — 51.2/100 · developing
Contract Quality 16.3 / 25
Developer Ergonomics 14.3 / 20
Commercial Clarity 8.9 / 20
Operational Transparency 1.7 / 13
Governance 0.0 / 12
Discoverability 10.0 / 10
Agent readiness — 75/100 · agent native
Machine-Readable Contract 18 / 18
Agentic Access Contract 15 / 15
MCP Server 12 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 6 / 6
Agent Skills 5 / 5
Well-Known Catalog 4 / 4
Consent & Bot Identity 0 / 3
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/clawvisor: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 5

Individual APIs this provider publishes, each with its own machine-readable definition.

Clawvisor Auth API

Local magic-link session exchange.

Clawvisor Catalog API

Discover the services and actions available to the agent.

Clawvisor Gateway API

Execute authorized actions on downstream services through the gateway.

Clawvisor Tasks API

Declare, approve, expand, and complete task scopes.

Clawvisor Tokens API

Mint and revoke scoped agent tokens (admin-gated).

Arazzo Workflows 2

Multi-step API workflows described with the Arazzo specification.

_Index

ARAZZO

Clawvisor — approve-scope-and-triage

Declare a read-scoped task, wait for the user to approve it, list and read messages through the gateway under scope, then complete the task. Every operationId is verified agains...

ARAZZO

MCP Servers 1

Model Context Protocol servers that expose these APIs to AI agents.

clawvisor-mcp.yml

MCP SERVER

Event Specifications 1

AsyncAPI definitions for this provider's event-driven and streaming APIs.

Security Posture 2

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Clawvisor Authentication

apiKey/http · 2 schemes

SECURITY

Clawvisor Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Clawvisor Agentic Access

12 operations · 8 acting · 1 human-in-the-loop

12 operations · 8 acting

AGENTIC

Resources

Get Started 3

Portal, sign-up, and the first successful call

Documentation 2

Reference material describing how the API behaves

Agent Surfaces 5

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 6

Pagination, idempotency, versioning, errors, and events

Build 3

SDKs, sample code, and the tooling you integrate with

Access & Security 2

Authentication, authorization, and security posture

Operate 1

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Source (apis.yml)

apis.yml Raw ↑
aid: clawvisor
name: Clawvisor
description: 'Clawvisor is the authorization layer for AI agents — a Y Combinator (Spring 2026) security gateway that sits
  between an AI agent and the tools it acts on (Gmail, Calendar, Drive, Contacts, GitHub, Slack, Notion, Linear, Stripe, Twilio,
  iMessage). Agents never hold downstream credentials: they declare a task describing their purpose and the service/action
  pairs they need, the user approves that scope once, and Clawvisor enforces restrictions, task scope, and LLM intent verification
  on every request before injecting vaulted, short-lived credentials, executing through an adapter, and writing a full audit
  trail. It ships open-core as a self-hostable Go daemon with a CLI, web dashboard, TUI, and an OAuth 2.1 MCP server, plus
  an official Claude Code plugin. Agents integrate over a plain HTTP gateway or MCP — no SDK or agent-code changes required.'
url: https://raw.githubusercontent.com/api-evangelist/clawvisor/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- y-combinator
x-tier: profiled
x-tier-reason: enriched-from-provider-surface
accessModel:
  pricing: unknown
  onboarding: self-serve
  trial: false
  try_now: false
  public: false
  label: Self-serve signup
  confidence: medium
  source:
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://raw.githubusercontent.com/clawvisor/clawvisor/main/web/public/favicon.svg
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-07-18'
tags:
- AI Agents
- Authorization
- Security
- Identity
- Access Control
- MCP
- Credential Management
- Governance
- Developer Tools
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
apis:
- aid: clawvisor:clawvisor-auth-api
  name: Clawvisor Auth API
  description: Local magic-link session exchange.
  humanURL: https://github.com/clawvisor/clawvisor
  baseURL: https://app.clawvisor.com
  tags:
  - Auth
  properties:
  - type: OpenAPI
    url: openapi/clawvisor-auth-api-openapi.yml
  - type: Arazzo
    url: arazzo/clawvisor-triage-inbox.yml
- aid: clawvisor:clawvisor-catalog-api
  name: Clawvisor Catalog API
  description: Discover the services and actions available to the agent.
  humanURL: https://github.com/clawvisor/clawvisor
  baseURL: https://app.clawvisor.com
  tags:
  - Catalog
  properties:
  - type: OpenAPI
    url: openapi/clawvisor-catalog-api-openapi.yml
  - type: Arazzo
    url: arazzo/clawvisor-triage-inbox.yml
- aid: clawvisor:clawvisor-gateway-api
  name: Clawvisor Gateway API
  description: Execute authorized actions on downstream services through the gateway.
  humanURL: https://github.com/clawvisor/clawvisor
  baseURL: https://app.clawvisor.com
  tags:
  - Gateway
  properties:
  - type: OpenAPI
    url: openapi/clawvisor-gateway-api-openapi.yml
  - type: Arazzo
    url: arazzo/clawvisor-triage-inbox.yml
- aid: clawvisor:clawvisor-tasks-api
  name: Clawvisor Tasks API
  description: Declare, approve, expand, and complete task scopes.
  humanURL: https://github.com/clawvisor/clawvisor
  baseURL: https://app.clawvisor.com
  tags:
  - Tasks
  properties:
  - type: OpenAPI
    url: openapi/clawvisor-tasks-api-openapi.yml
  - type: Arazzo
    url: arazzo/clawvisor-triage-inbox.yml
- aid: clawvisor:clawvisor-tokens-api
  name: Clawvisor Tokens API
  description: Mint and revoke scoped agent tokens (admin-gated).
  humanURL: https://github.com/clawvisor/clawvisor
  baseURL: https://app.clawvisor.com
  tags:
  - Tokens
  properties:
  - type: OpenAPI
    url: openapi/clawvisor-tokens-api-openapi.yml
  - type: Arazzo
    url: arazzo/clawvisor-triage-inbox.yml
common:
- type: DeveloperPortal
  url: https://clawvisor.com
- type: Documentation
  url: https://github.com/clawvisor/clawvisor/tree/main/docs
- type: APIReference
  url: https://github.com/clawvisor/clawvisor#agent-integration
- type: GettingStarted
  url: https://github.com/clawvisor/clawvisor#get-started
- type: GitHubOrganization
  url: https://github.com/clawvisor
- type: Support
  url: https://github.com/clawvisor/clawvisor/issues
- type: Pricing
  url: https://clawvisor.com/pricing
- type: SignUp
  url: https://app.clawvisor.com/register
- type: TermsOfService
  url: https://clawvisor.com/terms
- type: PrivacyPolicy
  url: https://clawvisor.com/privacy
- type: MCPServer
  url: mcp/clawvisor-mcp.yml
- type: AgentSkill
  url: skills/_index.yml
- type: LLMsTxt
  url: llms/clawvisor-llms.txt
- type: WellKnown
  url: well-known/clawvisor-well-known.yml
- type: Authentication
  url: authentication/clawvisor-authentication.yml
- type: Conventions
  url: conventions/clawvisor-conventions.yml
- type: ErrorCatalog
  url: errors/clawvisor-problem-types.yml
- type: Lifecycle
  url: lifecycle/clawvisor-lifecycle.yml
- type: Conformance
  url: conformance/clawvisor-conformance.yml
- type: DataModel
  url: data-model/clawvisor-data-model.yml
- type: Webhooks
  url: asyncapi/clawvisor-callbacks-webhooks.yml
- type: Packages
  url: packages/clawvisor-packages.yml
- type: CLI
  url: cli/clawvisor-cli.yml
- type: DomainSecurity
  url: security/clawvisor-domain-security.yml
- type: AgenticAccess
  url: agentic-access/clawvisor-agentic-access.yml
x-enrichment:
  date: '2026-07-19'
  status: backfilled
  pass: local-v1
  note: backfilled from .gitignore signal + verified work evidence