PlatformAgent API

Built for coding agents, approved with one click.

Your agent reads one page, asks you to approve one link, and from then on makes every call itself: deploy, set variables, read logs, create a database. The whole contract is one unauthenticated request, written for software to read.

Read the API contract
  • One sentencePaste it into Claude Code, Codex, Cursor, Antigravity or Windsurf
  • One approvalYou open a link and click Approve. That is your whole part
  • Scoped credentialsAccount tokens, and project keys for one app that are safe for CI
  • Written for machinesagent.md, llms.txt and a machine-readable contract at /api/v1

01How it works

One link to approve. Then it runs itself.

The only thing a person does in the whole flow is open a link and click Approve. Every other call is your agent's.

Connect with a device login.

Your agent starts a device login, shows you a link and a code, and polls until you approve. If you are signed out, or have no account yet, the same link takes you through Google or GitHub and back to Approve, so there is no sign-up first. The token goes into a file, never into the chat.

  • A code lasts fifteen minutes, and a refusal is final
  • The token is written to ~/.antideploy/config.json and is never printed
  • The response names the account you approved, so you know which one it is
Read agent.md
What your agent shows you
$ curl -X POST "$API/device/code" -d '{"clientName":"Claude Code"}'

Open  https://antideploy.com/activate?code=WDJB-MJHT
Confirm the code reads WDJB-MJHT, then click Approve.

$ curl -X POST "$API/device/token" -d '{"deviceCode":"..."}'
Approved. Token saved to ~/.antideploy

Or add the MCP server once.

For any client that speaks MCP, add the server once and your agent can deploy, read the result and fix what broke without you relaying it. Everything beyond its tools is plain HTTP, which every agent can already do.

  • Nothing to install, it runs with npx
  • Works with any MCP client
  • The same API covers the rest of the platform
Read the agent guide
Claude Code
$ claude mcp add antideploy \
    -e ANTIDEPLOY_API_KEY=ad_your_key \
    -- npx -y antideploy-mcp
deploydeployment_statusset_envlist_envapi_info

02What you get

Software talking to software.

Everything a coding agent needs is written to be read by one: instructions in plain text, a contract in JSON, and errors that say what to do next.

  • A sentence, not a setup. The pasted sentence names one page, agent.md, which is a procedure: connect, set up what the project needs, deploy, and tell you where it is live and on which account.
  • One approval, scoped and revocable. Your agent gets a token for your account only after you approve it. You can see and revoke it at any time at antideploy.com/tokens.
  • Account tokens and project keys. An account token (prefix adu_) is for your agent and never goes in the project. A project key (prefix ad_) is for one application, is built to survive being committed, and is what you use in CI. Each application can have up to ten.
  • A contract made for software. GET /api/v1 is unauthenticated and always answers. It carries every endpoint, request shape, error code and limit, and its start section is the whole path from an empty terminal to a live URL.
  • Warnings are data. Warnings and hazards in a response are structured fields meant to be relayed to you, not decoration. An error says what is wrong, whether to retry and what to do instead.
  • It tells you if it is blocked. If an agent's sandbox blocks outbound requests to antideploy.com, agent.md gives it the exact sentence to tell you, so you can allow the domain and carry on.

03Reference

What an agent can do.

All of it through the API, with an account token. A project key can do the same for its own application.

AreaCalls
Applications and deploysCreate and list applications, deploy, redeploy, roll back, read deploy history and watch a deploy, change the address, deploy on push and the root directory.
VariablesSet variables, list their names and remove one. Values are never readable.
ServicesCreate and inspect a database, bucket, sign-in and email, and create AI keys.
OperatingRead logs, metrics and health, manage cron jobs, and run security scans.
CredentialsMint and revoke project keys for CI, with an account token.

04Boundaries

What an agent cannot do.

Kept in your browser on purpose, because they are irreversible, or because they spend your money or widen access.

ActionWho does it
Delete an applicationYou, in the console.
Drop a databaseYou, in the console.
Read a secret backNobody. Values are write-only. The one exception is a service's own variables, written straight to a file.
Mint another account tokenYou approve each one, once, in a browser.
Add money to the AI walletYou, in Settings, then Billing.
Attach a custom domainYou, on the application's Domains tab.

05Before you commit

Here's where it stops.

A platform that only tells you what it is good at is one you find the edges of in production. These are the Agent API's.

  1. An agent that cannot reach us

    If a sandbox blocks outbound requests to antideploy.com, nothing else works. agent.md tells the agent what to say, and you allow the domain or run the agent on your own machine.

  2. Deleting stays human

    An agent can create a database but cannot drop one, and cannot delete an application. Those are done in the console, on purpose.

  3. Limits are answers, not retries

    Deploys are limited per hour per app, and a plan limit answers with a 402 that is not a rate limit. A good agent says what the message says and lets you choose.

  4. MCP covers the essentials

    The MCP server covers deploying, status and variables. Everything else is plain HTTP, which every agent can already do.

06Questions

Agent questions, answered.

Anything else? Write to us and a person answers.

support@antideploy.com
Which coding agents does it work with?

Claude Code, Codex, Cursor, Antigravity and Windsurf, and any agent that can read a web page and make requests. There is also an MCP server, npx -y antideploy-mcp, for any client that speaks MCP.

Do I need to sign up before I start?

No. Paste the sentence into your agent first. When it needs you, it shows a link: sign in with GitHub, Google or an email link, check the code matches, and click Approve. That is the only thing you do by hand.

What can my agent do with my account?

Deploy, set variables, read status, logs and metrics, create a database, bucket, sign-in and email, create AI keys, schedule jobs and run security scans. It cannot delete an app, drop a database, read a secret back, attach a domain or add money to your wallet.

How do I revoke my agent's access?

From the Tokens page at antideploy.com/tokens. A revoked token stops working immediately.

Where is the token kept?

In ~/.antideploy/config.json on your machine, readable only by you, and never in the project directory. Your agent is told never to print it.

What is a project key?

A credential for one application that is built to survive being committed, so it suits CI. It can deploy and read that application and cannot mint other keys. You can have up to ten per application.

Where is the API described?

At antideploy.com/api/v1, one unauthenticated request that returns every endpoint, request shape, error code and limit as JSON.

What is llms.txt?

A short plain-text entry point at antideploy.com/llms.txt for an agent that has been told to ship something and knows nothing else. It points at the contract and the procedure.

What if my agent's sandbox blocks the network?

Then it cannot reach us, and it should say so. agent.md gives it the exact sentence: allow antideploy.com in the environment's network settings, run the agent on your own machine, or upload the folder in the console.

+The rest of the platform

Everything else your app can use.

Every service is created by your coding agent, wired into your app, and included in the plans. See the whole platform.

Facts on this page were checked against the live platform on 5 October 2026.

Tell your agent once. It does the rest.

Copy the sentence, paste it into your agent, click Approve. Nothing is added to your project, and you can tear it all down in one click.

Start from GitHub or a folder
Prompt copied Paste it into Claude Code, Codex or Cursor and press Enter.