Skip to main content
Hands

Your AI can think. Now it can act.

Most AI stops at text. Hands gives your AI the ability to browse the web, call APIs, run scheduled tasks, send emails, manage secrets, read and write files, execute shell commands, commit and push code, and deploy applications.

Not theoretical actions. Real ones, executed on real infrastructure.

100+ tools across 9 capability domains. Deployed on Railway. Ready to use.

15 tools
Browser
Navigate, click, type, screenshot, extract data, fill forms, generate PDFs. Full headless browser automation.
5 tools
APIs
Authenticated HTTP requests. OAuth flows for Google, GitHub, Stripe, Slack. Webhook handling.
8 tools
Scheduling
Cron jobs, intervals, one-time tasks. Your AI runs autonomously. Check prices at 6am. Send reports at 5pm.
8 tools
Email
SMTP, IMAP, Gmail API. Send, read, search, parse attachments. Your AI handles the inbox.
6 tools
Vault
Encrypted credential storage. AES-256-GCM. API keys and secrets encrypted at rest.
8 tools
Database
PostgreSQL, MySQL, SQLite, MongoDB. Query, insert, transactions. Full ACID support.
12 tools
Filesystem
Read, write, move, copy, delete files. Search by name or content. Binary and text. Archives.
5 tools
Shell
Execute PowerShell, cmd, or bash commands. Start processes. Interact with REPLs. Read output.
6 tools
Git & Deploy
Commit, push, branch, merge, diff. Deploy to production. The full ship-it pipeline.
Add Hands · from $11/mo100+ tools · 9 capability domains · browser + files + shell + git + deploy
Works with
Extension
Claude Desktop
CLI
100+ tools · 9 capability domains · browser + filesystem + shell + git + deploy + API + email + vault + database

The difference between an assistant and an employee.

An assistant tells you what to do. An employee does it. Your AI is brilliant at analysis, writing, and reasoning. But the moment you need it to actually DO something (check a website, send an email, update a file, push code), you're back to doing it yourself.

Hands closes that gap. Your AI doesn't just suggest the git command. It runs it. It doesn't just draft the email. It sends it. It doesn't just describe the deployment. It deploys.

For vibe coders
You build fast. Hands lets your AI handle the boring parts: committing, pushing, deploying, checking if it worked, rotating keys, scheduling background tasks. You focus on building. Your AI handles the infrastructure.
For professional developers
You have workflows that take 15 minutes of context-switching: check logs, update configs, commit changes, verify the deploy. Hands automates the pipeline. One instruction, full execution.
For teams and enterprise
Your AI can now monitor production endpoints, rotate credentials on schedule, process incoming emails, update databases, and report results, all without a human in the loop. Autonomous operations, auditable actions.
What you can build

9 tool domains that compose into anything.

Browser, API, scheduling, email, vault, database, filesystem, shell, git. Each is useful alone. Together they let your AI do the tedious work that currently eats your mornings.

Ship a feature end-to-endNew
Write the code. Run the tests. Fix what fails. Commit with a conventional commit message. Push to origin. Verify the Vercel deployment succeeded. Report the production URL.
Shell + Git + API
Monitor competitor pricing
Schedule a daily browser task. Navigate to their pricing page. Extract the numbers. Compare to yours. Email you if anything changes.
Browser + Cron + Email
Automate invoice processing
Watch your inbox for invoices. Parse the PDF attachment. Extract line items. Insert into your accounting database. Send a confirmation.
Email + Database
Research and file pipelineNew
Search the web for a topic. Extract key claims. Run them through ASURIQ verification. Write the results to a structured file on your machine. Commit the report to your repo.
Browser + Filesystem + Git
Credential rotationNew
Store API keys in the encrypted vault. Rotate them on schedule. Update the environment files that reference them. Commit the config changes. Log the rotation.
Vault + Cron + Filesystem + Git
Full-stack health check
Every 15 minutes, call your production endpoints. If any return errors, check the server logs via shell. Write a diagnostic report. Email it to your team.
API + Shell + Email + Cron
Security

Power tools need guardrails. Here are nine of them.

Giving AI the ability to touch files, run commands, send emails, and push code requires security that doesn't sleep. Hands is built with defense-in-depth: every layer assumes the layer above it has been compromised.

AES-256-GCM vault
Credentials encrypted at rest. Master key in OS keychain. Your API keys, passwords, and secrets never exist in plaintext on disk.
Auth on every request
Every Hands API call requires authentication. No anonymous access. No public endpoints. Every action is attributed to a user.
Resource limits
CPU, memory, and execution time caps per task. A runaway process or infinite loop can't consume your infrastructure.
Isolated deployment
Hands runs on its own Railway instance (hands.asuriq.dev). Separate from verification. Separate failure domain.
Directory allowlisting
Filesystem access is restricted to explicitly allowed directories. Your AI can't access system files, other users' data, or paths outside the approved list.
Command blocklist
Dangerous shell commands are blocked by default. rm -rf, format, shutdown: the commands that can cause irreversible damage are never executed.
OAuth token management
OAuth flows for Google, GitHub, Stripe, Slack. Tokens stored encrypted. Automatic refresh. Your credentials are never exposed in logs or responses.
Audit trail
Every action is logged: what was executed, when, by whom, what it returned. Full accountability. Reviewable history.
Git identity isolation
Git operations use a dedicated identity. Commits are clearly attributed. Push access is scoped to configured repositories only.

The principle: your AI should be able to do everything you need it to do, and nothing you don't. Every capability is opt-in. Every action is logged. Every credential is encrypted. You set the boundaries. Hands enforces them.

Two ways to use Hands

Your machine or ours.

Same 100+ tools. Different execution environments. Pick the one that matches how you work.

Hands Local
$11/mo

Tools execute on your machine. Claude Desktop (MCP) or CLI. Your hardware, your data, zero server cost. The full 100+ tool library runs locally.

All 9 capability domains
Filesystem, shell, git: native access
Browser automation via local Puppeteer
Cron runs while your machine is on
Privacy-first: nothing leaves your device
Works with Claude Desktop + CLI
Hands Hosted
credits per action

Tools execute on ASURIQ's infrastructure. Works from GPT Store, Gemini Gem, or any surface. No local setup required. Pay per server action.

Browser automation (4 credits)
Database queries (1 credit)
Email send/receive (1 credit)
API proxy calls (1 credit)
Cron scheduling (1 credit)
Works with ChatGPT, Gemini, API, CLI

GPT Store and Gemini Gem users don't need a subscription. Tool definitions are built into the Custom GPT / Gem. Just buy credits.

What this replaces
Password managers (1Password, LastPass)$3–8/mo
Automation tools (Zapier, Make)$20–50/mo
Browser automation (Browserflow)$30–50/mo
Cron/scheduling services$5–15/mo
$60–120/mo replaced by $11/mo
Your data stays yours
Prompts stay with your provider. We see analysis metadata only.
Keys never stored
One-way hash for authentication. Your credentials pass through. Never persist.
~2 second responses
Single-model cognitive tools return in about 2 seconds.
37 of 100 flagged
We ran 100 ChatGPT answers through verification. See the study →

Currently in friends-and-family beta. Built on peer-reviewed cognitive architecture.

Baars — Global Workspace TheoryACT-R — Memory Decay ModelWang et al. 2025 — Silent AgreementLi et al. EMNLP 2024 — Sparse Debate

Give your AI hands.

Local $11/mo · Hosted pay-per-action · 100+ tools · 9 domains · cancel anytime