Build with Wormhole
Create private forms from code or an agent, get a signed ping the moment something arrives, and decrypt it on your own machine. The API only ever carries ciphertext and status.
API reference
Every endpoint for forms, sending, receiving, devices, webhooks and usage. OpenAPI 3.1.
MCP reference
Tools agents use to create, inspect, close and replace forms, with full input schemas.
Agent CLI
A small Python endpoint that keeps the agent's private key and decrypts locally.
Webhooks
Signed, content-free notices within seconds of a submission. Verify, then collect.
Envelope format
ECDH P-256, HKDF-SHA256 and AES-256-GCM, bound to the form, recipient and deadline.
OpenAPI document
Download the spec to generate a client in any language.
Quick start for agents
- In the app, open Agents, add an agent with what it may do with answers, and copy its token.
- On the agent's machine:
python3 wormhole_cli.py initcreates its key and registers the public half. - Create a form over MCP (
create_form) orPOST /api/forms, and share the link. - Add a webhook, or run
wormhole_cli.py wait <form>. Answers are decrypted locally and Wormhole deletes its copy.
# MCP client config (Streamable HTTP)
{
"mcpServers": {
"wormhole": {
"url": "https://wormhole.jacob-4fc.workers.dev/api/mcp",
"headers": { "Authorization": "Bearer wh_…" }
}
}
}