Clawvisor
An authorization gateway that sits between AI agents and the apps they touch — Gmail, Slack, GitHub, and more — approving a task once and enforcing it on every call, so agents never see real credentials. Free self-hosted, or from $50/month.
🔗 Visit ClawvisorDescription
Giving an AI agent access to Gmail or Slack usually means one of two bad options: hand it your actual API keys and hope it behaves, or lock everything down so tightly it can't get anything done. Clawvisor tries a third path — you approve a task once, and every request the agent makes gets checked against that approval before it's allowed through, with the agent never directly handling the real credentials.
It supports 14 service adapters (Gmail, Google Calendar, Google Drive, Outlook, GitHub, Slack, Notion, Linear, Stripe, Twilio, iMessage, Dropbox, and more), keeping credentials in an encrypted vault and injecting them server-side only after a request is verified. The differentiator is task-based control rather than per-call permission checks: Clawvisor evaluates whether a request fits the purpose the human already approved, not just whether the API call itself is technically allowed. It's free and open-source to self-host, Solo is $50/month for up to 15,000 protected calls, Team is $150/month for 50,000 calls with a 30-day free trial, and Enterprise is custom-priced with SOC 2, SAML/SSO, and VPC deployment for larger organizations.
💬 Our review
The short version: Clawvisor's task-based authorization model is the meaningful difference from a plain API-key vault — it checks whether a request matches what you actually approved, not just whether the credential technically works, which matters once an agent is doing dozens of actions per task rather than one.
The free self-hosted, open-source option is a real advantage for teams that want full control without recurring cost, and the 30-day free trial on Team makes it low-risk to test at a realistic call volume before committing. The Solo tier's 15,000-call cap is generous for individual use but could get tight fast for a team running several agents simultaneously — worth checking actual call volume before picking a tier. Compared to a narrower tool like OneCLI (which focuses on credential injection specifically), Clawvisor's 14 service adapters and audit logging make it a more complete authorization layer, at the cost of being a bigger piece of infrastructure to adopt.
💰 Pricing
📊 Global score
🤖 AI-enriched data
Self-hosted gratuit ; Solo 50$/mois (15k appels) ; Team 150$/mois (50k appels, essai 30 jours) ; Enterprise sur devis (SOC 2, SSO, VPC).
Pros
Autorisation basée sur la tâche, pas juste sur l'appel technique
14 adaptateurs de services (Gmail, Slack, GitHub, Stripe, etc.)
Option self-hosted gratuite et open-source
Essai gratuit 30 jours sur le tier Team
Cons
Palier Solo limité à 15k appels/mois, peut être juste pour plusieurs agents
Plus lourd à adopter qu'un simple coffre de credentials comme OneCLI
Tarification Enterprise sur devis uniquement