Read your DeployHQ projects and deployments, change build config with approval
Connect DeployHQ and your agent can answer questions about projects, repositories, branches, and past deployments without you opening the dashboard. When something needs to change — a config file, an SSH command, an excluded path, repository settings — the agent shows the edit first and waits for your approval before it writes. Luumen authenticates with basic auth.
57 tools: 22 read, 35 write. Reads answer instantly. Writes require approval by default. Everything is logged.
What a governed DeployHQ run looks like inside Luumen.
Authorize once with Basic auth. Luumen lists the scopes each action needs before you approve the connection, and credentials never appear in the chat.
Read actions answer immediately. Anything that writes — delete command, delete project, delete build cache file, delete excluded file rule, and more — is shown as a plan and requires approval by default, including the 7 actions classified as destructive. Administrators configure that per tool, so you decide exactly which actions can ever run unattended.
You decide. Actions are granted per agent, skill, and team, and per environment — production is not staging. Read access can be broad while writes stay narrow.
Every call to DeployHQ — read or write, approved or declined — is recorded with the actor, the input, and the result, and can be linked to the ticket or change record.
Connect in minutes. Every action scoped, approved, and audited from day one.