Agent Gateway Plugin
The Agent Gateway plugin enables workflow graphs and autonomous AI agents to query their agentic wallet credit balance and produce Turnkey-backed cryptographic payment signatures for KeeperHub marketplace workflows.
All signing requests are authenticated using HMAC authentication (X-KH-Sub-Org, X-KH-Timestamp, X-KH-Signature) and forwarded to KeeperHub’s canonical /api/agentic-wallet/* endpoints. Private keys remain strictly isolated within Turnkey policy enclaves and are never exposed to workflow steps or logs.
Credentials Setup
Credentials for the Agent Gateway plugin link your workflow steps to a Turnkey-backed agent sub-organization:
-
Provision Agent Wallet: Call the provisioning endpoint to create an agent sub-organization and retrieve signing credentials:
curl -X POST https://app.keeperhub.com/api/agentic-wallet/provisionThis returns
{ subOrgId, walletAddress, hmacSecret }. -
Configure Connection:
- Navigate to Connections in KeeperHub settings and select Agent Gateway.
- Enter the returned
Sub-Org IDandHMAC Secret. - Click Test to verify connectivity against
/api/agentic-wallet/credit.
[!WARNING] The
hmacSecretis generated once upon initial provisioning and cannot be retrieved later. Store it securely in your secrets manager.
Actions
| Action | Description |
|---|---|
| Check Credit Balance | Reads the available credit balance for the agentic sub-org wallet in USD. |
| Sign Payment Challenge | Signs an x402 (Base) or MPP (Tempo) payment challenge for a KeeperHub marketplace workflow. |
Check Credit Balance
Queries the off-chain credit ledger to inspect remaining operational balance.
- Inputs: Requires a configured Agent Gateway connection.
- Outputs:
success: Whether the credit query succeeded.amount: Available credit balance formatted as a USD decimal string (e.g."25.50").currency: Currency denomination ("USD").subOrgId: The verified sub-organization ID.
Sign Payment Challenge
Requests a Turnkey-backed cryptographic payment authorization for a KeeperHub marketplace workflow.
- Inputs:
Chain: Target settlement network ("base"for x402,"tempo"for MPP).Workflow Slug: The slug of the KeeperHub marketplace workflow being paid for. Required:/api/agentic-wallet/signderives the recipient address (payTo) and required payment amount directly from the workflow registry.Payment Challenge: The 402/WWW-Authenticate payment challenge payload.
- Outputs:
success: Boolean indicating whether the signing operation succeeded.status: Current state ("signed","pending_approval","blocked", or"error").signature: Turnkey-backed signature for the payment challenge (present when status is"signed").approvalRequestId: Present when human-in-the-loop review is required by sub-org risk policy.
Security & Architectural Invariants
- Zero Private Key Custody: Workflow steps never hold, inspect, or pass private keys. All cryptographic signing occurs inside hardware-isolated Turnkey enclaves.
- Workflow-Bound Payment Gating: Payment challenges must match registered marketplace workflows by slug; arbitrary third-party payees or unbounded amounts are rejected at the route handler level with
403 Forbidden. The slug decides who is paid:Sign Payment Challengepays whichever listingWorkflow Slugnames, so in a workflow deployed from a template, the template’s slug is the payee. Check it before you connect your wallet. - Timestamp Window & Double-Spend Prevention: HMAC request signatures are valid within a symmetric 300-second window to bound replay exposure, while underlying x402/MPP protocol nonces enforce single-use execution at the settlement layer.
- Credential Storage Protection: Configuration secrets (such as HMAC request secrets) are encrypted at rest with AES-256-GCM and stripped entirely from any connection-read response before it leaves the server. The HMAC secret is returned only upon initial provisioning and rotation (
/api/agentic-wallet/rotate-hmac). - Shared Daily Cap:
/api/agentic-wallet/signcaps total spend per sub-org per UTC day ($200 USDC by default). The cap belongs to the sub-org, not to the connection, so every workflow and agent signing with the same sub-org draws on one daily budget.