Verigrant › Guide for people
Let an agent act for you, safely
Your AI agent can act for you at websites. It can search, hold a seat, book, and ask you before it pays. Verigrant gives it a short pass that shows a site a real person stands behind it, inside limits you set. The pass does not carry your name.
1. Before you start
- A Verigrant account for a person It is free, and so is everything on this page.
- Your authenticator app Turn it on in Settings, under Account and security. Some approvals ask for its code.
- An agent that works with Verigrant Ask whoever runs your agent. The person who sets it up can follow the guide for agent developers.
2. Pair your agent
If your assistant connects to remote MCP servers, the short way is Connect: one click from the assistant, a sign in, and an approval, with no keys to paste. The guide to Connect has it. The steps below are pairing by hand, which still works and is what an agent on its own device uses.
-
Set up the agent on its own device.
Its setup prints two public keys. With the Verigrant MCP server the command is
vg-agent-mcp init. - Open Agents and approvals. In Verigrant, go to Settings, then Agents and approvals. Under "Agents that act for you at websites", paste the two keys.
- Set its limits. Choose where it may go, why it may act for you, what it may do, how long each pass lasts, how many passes it may get in a day, and for how many days.
- Choose the section of your record it holds. Every paired agent holds the key to at least one section of your record, and can read that section. Choose the one you mind least. Verigrant still cannot read it.
-
Unlock your record and pair.
Verigrant shows you an assistant code once. Give it to your agent and to nobody else.
With the Verigrant MCP server, run
vg-agent-mcp pairand paste the code when it asks.
3. What happens when it acts
- A pass for one site at a time Before your agent uses a site, it asks Verigrant for a pass for that site. A pass lasts ten minutes at most. It carries an address that means you at that one site, so two sites cannot match you up through it.
- The site checks the pass itself It does not call Verigrant to do it. Verigrant does not see the pages your agent asks for, or what comes back.
- Some sites have a door for agents A site that uses Verigrant can give your agent its own permission to a structured interface built for agents, instead of its pages built for people.
- What Verigrant sees Verigrant sees the site each time your agent asks for a pass. If you limit your agent to a list of sites, Verigrant can read that list. If you would rather it did not, choose any site that reads Verigrant passes.
4. Approving what it does
When your agent wants to do several things in a row, it proposes a task. The task waits under "Waiting for your approval" in Agents and approvals. Nothing in it runs until you approve it. These are the approvals each kind of step needs by default, and the screen shows the ones in force for your agent.
- Looking and searching No extra approval, because it runs inside a task you approved.
- Holding something, or booking without paying One tap in Verigrant.
- Cancelling, signing in at a site, or a smaller payment The code from your authenticator app.
- A larger payment, or acting on your account or an application at a site A passkey.
Passkeys are not on Verigrant yet
A step that needs a passkey cannot be approved, so your agent cannot do it. The screen tells you when a step is one of these.
5. Payments, orders and your details
- Approving a payment When your agent is ready to pay outside a task, it asks you on the "Approve a payment" card. You set the most it may charge. Nothing is paid without your approval.
- No money moves yet Payments through Verigrant run in test mode. An approval you give today does not move money.
- Your traveller details Keep names, dates of birth and traveller numbers in Settings, under Orders and activity. When your agent needs them for a purchase, you send it a copy sealed in your browser to that one business. Your agent carries the copy and cannot read it. The copy is deleted ten minutes after your agent collects it, or a day after you sent it.
- Orders and receipts Orders and activity shows each order and the business's signed answer. "What your agents did" lists every pass and payment. These receipts are sealed to your key, so Verigrant can write them and cannot read them.
- Updates about a booking A business you allowed can send you updates about a booking, such as a cancellation with other flights to choose from. They arrive in your Verigrant inbox, sealed to you, under the booking they are about.
Not on the screens yet
Allowing a business to send you updates about a booking, and making a masked address so a business can message you in Verigrant without learning your email, are built into the service. The screens to switch them on are not in the app yet.
6. Stopping it
- Stop one task Press Stop on the task. Every later step stops at once. A site may still honour a pass it already holds for up to five minutes.
- Revoke the agent Press Revoke on the agent in Agents and approvals. Verigrant gives it no more passes. A pass it already holds works at a site until it ends, ten minutes at most.
- Then sign in again Until you do, the agent still holds a working key to the section of your record it was paired with. Signing in again finishes the revoke.
7. What is not live yet
- Payments that move money Payments through Verigrant run in test mode.
- Passkeys Steps that need one cannot be approved.
- A door for every site Your agent can use a pass only at sites that read Verigrant passes. Fronts hosted by Verigrant for sites that have not built one go live on their own day.
- Health records They are not switched on.
What Verigrant can and cannot read is on the security page and in the privacy policy.