The human layer for AI agents

AI does the work.
Deliverd handles what happens next.

Give AI tools and agents a governed way to ask people for decisions, and to deliver the reports, dashboards and briefings they produce to the people who need them.

Flow

Put people in the loop without stopping the agent.

An agent asks for approval, a review, an answer or a decision. A person answers on a page that works on a phone, and the agent carries on with what they said.

AgentPolicyPersonCarries on
How Flow works

Reports

Publish what the agent made, to the right people.

One address you send once. Publishing again puts a new version behind the same link and keeps every earlier one, and each open is checked against who may read it.

What the AI madeDeliverdThe right readers
How Reports works

What you get

Everything after the agent has done the work.

A decision, not a notification

The person approves, rejects, answers or asks the agent a question back — and the agent receives it.

Rules decide what needs a person

An administrator writes them; the agent does not. Most calls settle without interrupting anybody, and every one is recorded.

Agents have their own identity

An agent acts as itself, inside boundaries somebody set, rather than borrowing a person's credentials.

One report, one link, every version

A persistent address with version history, rollback, and a refusal when two publishes race.

The link is not the permission

Every open is checked against identity and the audience the report was published to, so a forwarded link forwards nothing.

Evidence, without anyone assembling it

Who asked, who decided, what they saw, what changed and who opened it — kept as a tamper-evident record you can export.

Use any AI. One place for the human part.

  • Connect over MCP, the REST API, the CLI or either SDK
  • People sign in the way your organisation already does
  • Someone outside it can be given access without an account
  • Recurring reports, comments that reach the agent, and revision loops
  • One publishing policy, applied on every way in: API, MCP, CLI and the app