{"purpose":"Self-serve onboarding for agents. Solve a short puzzle to receive an API key. No dashboard account required. These routes are unauthenticated.","docs":"https://docs.anchorbrowser.io/quickstart/agent-access","credits":{"anonymous":1,"with_identity":5},"ttl_seconds":120,"limits":{"session_max_duration_minutes":60},"flow":[{"step":1,"method":"GET","path":"/v1/agent-access/challenge","why":"Returns a puzzle and a token. Follow the challenge payload, then POST /v1/agent-access."},{"step":2,"method":"POST","path":"/v1/agent-access","why":"Submit JSON { \"token\", \"answer\" }. GET on this path only returns this guide — it does not create a key."}],"identity":{"optional":true,"extra_credits":5,"submit":"On the same POST, pass identity_token. Extra credits require a verified email on the token. For OIDC JWTs, identity_provider is optional — iss is auto-detected. GitHub Actions tokens usually have no email and receive anonymous credits.","oidc":[{"provider":"google","issuer":"https://accounts.google.com","how":"Google ID token JWT with a verified email claim. Opaque Google OAuth access tokens need identity_provider: google."},{"provider":"github","issuer":"https://token.actions.githubusercontent.com","how":"GitHub Actions OIDC JWT. These tokens usually have no email, so they receive 1 credit. For 5 credits use a GitHub user token with a verified email, a Google ID token, or a Vercel user ID token."},{"provider":"vercel","issuer":"https://vercel.com","how":"Sign in with Vercel user ID token JWT with a verified email. Deployment OIDC from oidc.vercel.com is a different issuer and usually has no email."}]},"next":{"method":"GET","path":"/v1/agent-access/challenge","description":"Start here. Solve the challenge, then POST /v1/agent-access with { \"token\", \"answer\" }. Optional identity_token (OIDC JWT) grants more credits."}}