Authyo
for LuumenAI

Check Authyo sessions and tokens, then revoke or send codes on approval

Connect Authyo and your agent can answer session questions on the spot: whether a token is still valid, and which user identity sits behind it. When something needs to change — revoking a session, verifying an OTP, sending a code or an order notification — the agent shows the plan first and waits for your approval before it runs. Luumen authenticates with an API key.

The Authyo toolbox

5 tools: 1 read, 4 write. Reads answer instantly. Writes require approval by default. Everything is logged.

  • ReadVerify TokenValidate an Authyo session JWT and return its associated user identity without returning the JWT.
  • WriteRevoke SessionIrreversibly revoke an Authyo user session identified by its JWT, typically during logout. Approval by default
  • WriteSend Order NotificationSend a usage-billed order or payment notification through an Authyo built-in template; requires a configured sender. Approval by default
  • WriteSend OTPSend a usage-billed one-time password to an email address or international phone number using Authyo's configured sender. Approval by default
  • WriteVerify OTPVerify a user-provided OTP for an Authyo mask ID and return the verified user identity without exposing the issued session JWT. Approval by default

One prompt, start to finish

What a governed Authyo run looks like inside Luumen.

Questions

How does LuumenAI connect to Authyo?

Authorize once with API token. Luumen lists the scopes each action needs before you approve the connection, and credentials never appear in the chat.

Can LuumenAI change things in Authyo on its own?

Read actions answer immediately. Anything that writes — revoke session, send order notification, send otp, verify otp — is shown as a plan and requires approval by default, including the 3 actions classified as destructive. Administrators configure that per tool, so you decide exactly which actions can ever run unattended.

Who gets access to the integration?

You decide. Actions are granted per agent, skill, and team, and per environment — production is not staging. Read access can be broad while writes stay narrow.

Is there an audit trail?

Every call to Authyo — read or write, approved or declined — is recorded with the actor, the input, and the result, and can be linked to the ticket or change record.

Put Authyo to work with Luumen

Connect in minutes. Every action scoped, approved, and audited from day one.