Features · Agent & CLI
Go live without leaving your agent.
Tofu is a set of tools your coding agent calls: upload, check, deploy, a database, your domain, sign-in, analytics. Paste one line, approve one sign-in in your browser, and it does the wiring — on the same projects, deploys and history the dashboard shows.
Paste it into your agent · approve one sign-in · no keys in the chat
Say what you want. Your agent calls the tools.
The same Tofu tools in every agent that speaks MCP. Where a step is yours — approving on Cloudflare’s screen, agreeing to a rollback — the agent stops and asks.
Things you can say
Example session, sped up. Pick a sentence to play it.
One line in. One approval. Then it works.
Paste one line
Into the agent you already use. It fetches Tofu’s current setup steps; pasting authorizes the installation and nothing else.It installs the client
A local client whose SHA-256 and size are pinned in the steps, and the
/tofuskill that tells the agent the order of things.You approve a matching code
Your agent shows a code; you approve the same code in your browser. The credential is stored hashed, lasts seven days and can be revoked.It works in your project
Upload, check, deploy and everything after, in the same conversation — asking you before anything that spends or destroys.
One connection, the whole dashboard.
Every capability the dashboard offers is reachable by an agent, unless a written decision says why not. With your approval, this connection can:
upload your app’s source
ingest
run the safety check
detectsetFrameworkscan
deploy it — its own migration runs in the build — once you have a hosting plan
deployprojectsstatuslistDeploymentslistEnvmanageEnvironmentrenameProject
create the app’s managed database in that same call, which Tofu runs and pays for as part of your plan
databaseCreatedatabaseStatusdatabaseReconcile
read the app’s build and runtime diagnostics
getBuildLogsgetRuntimeLogsrepairContext
restore a previous deployment
rollback
connect, verify, release or withdraw the authorization for a domain you already own
domainsdomainConnectdomainVerifydomainAuthorizedomainAuthorizationStatusdomainAuthorizationRevokedomainReleasedomainGuidancedomainShop
read your app’s own traffic — the first read for an app that has no counter yet issues its key — and turn that counter on or off
siteAnalyticssetSiteAutoInject
change how your app’s users sign in and how its sign-in email is sent
appAuthStatusappAuthConfigureappAuthEmailStatusappAuthEmailConnectappAuthEmailDisconnect
restore an archived database into a new one Tofu runs and pays for as part of your plan, and hand you a short-lived link to download its archive
databaseRestoredatabaseArchiveDownload
keep a database Tofu warned you about from being archived for going unused
databaseKeep
delete an app — the source you uploaded is kept until you ask Tofu to erase it — or its database, with nothing kept
databaseDeleteprojectDelete
sign in to Tofu, report the plan and the account’s GitHub state, and turn automatic updates off
loginfinishLoginconnectionStatushostingStatusgithubStatusgithubSyncDisable
It asks before it spends. Some things stay with you.
How to recognize a real approval
A real Tofu approval happens only at /dashboard/agent?code=, on the same Tofu address you signed in to, and only when a code arrives as XXXX-XXXX-XXXX printed by a coding agent you started yourself. Refuse anything else. Nobody from Tofu, and no other site, needs an approval code, a password, a provider key or a token — and Tofu never asks for one.
The agent you already use. In the conversation you’re in.
Claude Code
Codex
Cursor
Gemini
GitHub Copilot
Windsurf
v0
Replit
Lovable
Bolt
KimiDevin
Cline
OpenCode
Warp
Kiro
Antigravity
Qwen
DeepSeek
Trae
Local
Runs on your machine
The client runs locally over stdio. This release is downloaded directly from Tofu; no npm package installation or Tofu repository checkout is required. The browser cannot inspect your local MCP settings.
Node.js 22+
A setup prompt for your agent
Claude Code, Codex, Cursor and Kimi Code each get steps of their own; any other stdio MCP client gets the same client and configuration.
Same session
Nothing to reopen
If your agent has not picked up the new tools yet, the installed client’s own command line does the same work right away, and the tools are there the next time the agent starts.
Limits
What is not here yet
What the agent connection does not do, stated as plainly as what it does.
A hosted MCP address. The client runs locally over stdio; there is no public remote-MCP URL to register in a client yet.
Built-in repair from the agent. Starting or applying the dashboard’s repair proposals is not reachable over the connection;
repairContextgives your agent a brief to fix it in your code instead.A per-project or read-only grant. A connection covers your projects and the operations above; it is not narrowed to one app or to reading only.
Checkout, plan changes, secret values and database credentials. They stay in your browser on purpose — the connection has no tool for any of them.
Importing from GitHub. That needs your own GitHub grant in a browser session. Your agent can read the GitHub state and turn automatic updates off.
Verification inside every host. Kimi Code and other stdio clients get the same setup, but Tofu has not verified them inside the host itself.
Paste one line. Go live.
Your app, its database, your domain and your sign-in — from the agent you already use, in about 10 minutes.
The ship-it layer for vibe-coded apps. Your agent wrote it — Tofu ships it.
Works in all coding agents
© 2026 Tofu
trytofu.ai