STILLWORKS
☕ Support

OneCLI

Gateway that lets employee AI agents use company tools without ever holding a real password.

Visit product ↗
Listed Aug 21, 2026

OneCLI sits between each employee's AI agent and the tools it needs, injecting scoped credentials per request so the agent itself never holds a real secret. Limits are enforced outside the model, at the network layer: agents can't touch actions marked off-limits, like deleting a repo or sending a payment, and get slowed down if they start repeating actions or moving faster than a person would. It's open source, and the free plan includes $5 in AI credits and 500 calls a month with no credit card required.

What holds up

  • +Agents never hold a real credential — scoped access is injected per request instead
  • +Enforcement sits outside the model at the network layer, so a jailbroken prompt can't override it
  • +Free plan needs no credit card — $5 in AI credits and 500 calls a month to start

Mind the limits

  • Agents are limited to the tools and accounts their own employee already has, with no cross-team exception path shown
  • Self-hosted gateway — someone on your team has to run and maintain it, not a hosted SaaS

Featured here? Take the badge

Put it on your site — it links back to this review. Free for every listed product, always.

Picked by StillWorks
<a href="https://stillworks.dev/products/p/onecli/"><img src="https://stillworks.dev/badge/onecli.svg" alt="Picked by StillWorks" width="250" height="54"></a>