G
GhostLayerChallenge Edition
Open in ChatGPT to enable tools

Human authority layer for agent-ready SaaS

Give agents tools.
Keep humans in control.

GhostLayer helps SaaS teams expose fast, typed WebMCP actions without giving agents unchecked authority. This public CRM sandbox proves the full loop: discover, prepare, review, and commit.

  • Commerce operations
  • Finance workflows
  • Back-office administration
See production path
  1. 01
    Discover

    The page publishes two typed tools directly through WebMCP.

  2. 02
    Collaborate

    The agent prepares; the human sees the exact effect before deciding.

  3. 03
    Control

    Reject, replay safely, pause every tool, or reset the isolated demo.

Try with your agentOne prompt, two structured tools, one human decision.

Use GhostLayer's tools to find the fictional customer with phone +1-202-555-0120. Then prepare a $125 invoice draft for “September accessibility audit”. Stop and let me approve before anything is created.

Agent surfacefind_customer · create_invoice_draft
Read-only tool

Find customer

Structured output
Reserved fictional records: +1-202-555-0120 · +1-202-555-0138 · +1-202-555-0194

Ask the agent—or use the form—to retrieve a fictional customer.

Consequential tool

Create invoice draft

Human governed
Effect boundary

Input is validated in the page. No application API request, credential, or real record leaves this isolated tab.

Tab-local state

Invoice drafts

0

No draft exists until a human approves one.

Human-agent timeline

Tab-local activity log

1
  1. Sandbox ready

    No application API, credentials, or real customer records.

Production integration path

From a safe sandbox to your production API.

GhostLayer is for SaaS teams exposing commerce, finance, and administrative actions to agents. Keep the system you already trust; add a typed WebMCP contract and a human-owned commit boundary.

Inspect the working integration ↗
  1. 01Agent request

    Calls a named, typed business capability.

  2. 02WebMCP contract

    The page validates intent, input, origin, and risk.

  3. 03GhostLayer review

    Consequential work waits for the signed-in human.

  4. 04Your backend API

    Commit once, enforce policy, and return a receipt.

What this public app proves today

A complete human-agent decision loop

  • Two page-owned tools registered through native WebMCP
  • Strict adapter schema and bounded provider output
  • Visible approval with zero-write rejection and expiry
  • Replay protection, Pause/Resume lifecycle, and Reset
What a production adopter connects

Your identity, policy, storage, and API

  • Authenticate the approving user and enforce RBAC
  • Persist pending actions and idempotency keys server-side
  • Execute the consequential commit in a trusted backend
  • Store a durable audit receipt for every decision
Built on GhostLayer 0.5Adapter schema + WebMCP bridge

The Challenge Edition reuses the bounded contract and registration foundation from the earlier owner-only prototype, then adds this new public native WebMCP experience. The extension, private control plane, and production credentials are intentionally outside the judge sandbox.

Read the architecture ↗