Your agent integrates, you review the diff. With the key, this documentation and the CrossUp MCP, it verifies the key, writes the snippet and tests a recommendation and a signal. Handing it over is safe: the storefront key is public and scoped. Why, in Keys and security.

What your agent needs

The prompt

Paste this into your agent, with your key and your connection:

What an agent can do today, and what it can’t

The key has three permissions and a quota of 60 requests per minute: an agent can’t do anything the key doesn’t allow.

What you will see

A diff with the instance, the request and the two signals. In the agent’s answer, a decision_id (the recommendation’s id) and a signal_id with accepted: the same evidence you’d ask a person for.

If you don’t see it

The MCP

The tools an agent can call.

The skill

The integration path, as a file for your agent.