SFTP, S3 buckets, and VPN file shares all require ongoing infrastructure and leave credential residue behind. The Agentic API scopes each partner to exactly one directory — revocable in one click, with no firewall changes, no key rotation, no cloud middleman.
Machine-to-machine file transfer is a solved problem — until you look at the operational cost. SFTP requires open port 22, user account management, and painful key rotation every time a partner relationship ends. S3 bucket ACLs get messy fast and add a cloud middleman. VPN + NFS requires firewall rules just to move a file. None of these give true per-partner isolation: a compromised SFTP credential has access to everything that user can see, not just the folder you intended to share.
A compromised SFTP credential gives access to everything the user can see — not just the intended directory. Real isolation requires per-partner credential and access scoping.
Ending a partner relationship means deleting user accounts, rotating keys, and updating firewall rules. It should take a click — not a half-day of cleanup.
The Agentic API combines scoped folder access with zero-trust tunneling. Each external party — a partner, a CI pipeline, an IoT device — gets a Project Key and Secret scoped to exactly one directory on your machine. They can read from it, write to it (if permitted), and access nothing else. No VPN, no S3 bucket, no firewall rule, no open port. Credentials are revoked instantly by deleting the project.
Create an Agentic API project for each external party. Set the folder path to exactly the directory they need. Toggle write permission on or off. No user accounts created — just a scoped credential pair.
Share credentials via the built-in email draft feature or your preferred secure channel. The partner authenticates via Bearer token — no SSH client, no VPN client, no special tooling required.
When the relationship ends, delete the project. Access is revoked instantly, with no residual user account, no lingering SSH key, no firewall rule to update. Cleanup takes one click.
Scope a project to the vendor's incoming directory with write permission. They upload; they can never see any other directory. No SFTP server required.
Scope a project to an outbound reports folder as read-only. A client's system polls and downloads without S3 ACLs, pre-signed URLs, or expiring links.
A GitHub Actions workflow authenticates and writes a build artifact to a scoped staging directory. No SFTP port, no SSH key exchange needed.
IoT devices write sensor data to a scoped upload folder. A central aggregation server reads from all device projects on a schedule — no direct device-to-device networking.
| Property | Detail |
|---|---|
| Directory isolation | Each project is bound to explicit absolute paths only |
| Write control | Write and subfolder-create rights are independently toggled |
| No credential reuse | Each partner gets its own Project Key — revoke one without affecting others |
| No port exposure | Transfers tunnel through awaBerry infrastructure; no firewall changes needed |
| Audit trail | All file operations are attributable to the project key used |
Your GPU workstations and servers sit idle most of the time. The Agentic API turns them into callable compute nodes — accessible via a standard HTTPS POST, no open ports, no SSH keys required.
One API call, one project, any number of devices. Trigger the same command across your entire fleet in parallel — no key rotation, no jump host, no SSH daemon to maintain.
awaBerry Anywhere is a zero-trust remote access platform that gets any device — cloud server, laptop, or SoC hardware — securely accessible from anywhere in minutes. No VPNs, no open inbound ports, no complex configuration or additional remote connection software. Works on any MAC - yes even an old Apple macbook from 2012. Works on any Ubuntu / Debian / Redhad based LINUX. Works on any Windows which supports the Windows Subsystem for Linux (WSL).
Flexible onboarding for any hardware — in any environment.
Full control and activation via the awaBerry web dashboard.
awaBerry Automation is the combination of two tightly integrated products that together form a complete, AI-native automation platform.
Uses the Google Gemini CLI to translate plain-English instructions into executable scripts — run on your local devices on a schedule. AI tokens are spent exactly once to generate the logic; every subsequent execution costs nothing.
Read more →Secure, zero-trust device access as-a-service. Exposes your registered devices to programmatic access via encrypted tunnels — grant AI agents, scripts, or collaborators precisely scoped access.
Read more →Fundamentally different: a complete, AI-native automation platform — across every device you own, anywhere in the world.
Read more →Automate operations, manage fleets, and enable secure remote work for your entire team.
Access your home devices, automate personal tasks, and share access with family — for free.
Access lab hardware, automate data collection, and collaborate across institutions.
One project, one folder, one credential pair — revocable in one click.