Persona for AI agents
Persona provides identity verification infrastructure for building automated KYC and fraud-prevention checks. Trust and safety teams use it to verify user identities before granting access. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Persona.
Create an account for verification
Create an account record so an identity verification inquiry can be linked to it.
Check inquiry status read-only
Look up the status of a verification inquiry before deciding on next steps.
Expire an inquiry session with approval
Expire a pending verification session only after confirming the user abandoned it.
69 Persona actions, graded by risk.
Every Persona action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
32Look things up. Allowed by default.
- persona.search_casesSearch Cases
- persona.list_all_casesList All Cases
- persona.list_all_listsList All Lists
- persona.list_all_eventsList all Events
- persona.search_accountsSearch Accounts
- persona.list_all_devicesList All Devices
- persona.list_all_reportsList All Reports
- persona.list_all_accountsList All Accounts
- persona.list_all_api_logsList All API Logs
- persona.list_all_webhooksList All Webhooks
- persona.list_all_importersList all Importers
- persona.list_all_inquiriesList All Inquiries
- persona.list_all_rate_limitsList All Rate Limits
- persona.list_all_transactionsList All Transactions
- persona.list_all_workflow_runsList all Workflow Runs
- persona.list_all_inquiry_sessionsList All Inquiry Sessions
write
25Create and change things. Allow, or ask the user first.
- persona.create_webhookCreate Webhook
- persona.update_a_webhookUpdate a Webhook
- persona.create_an_accountCreate an Account
- persona.update_an_accountUpdate an Account
- persona.add_tag_to_accountAdd Tag to Account
- persona.create_name_list_itemCreate Name List Item
- persona.create_document_genericCreate Generic Document
- persona.create_string_list_itemCreate String List Item
- persona.update_document_genericUpdate Generic Document
- persona.create_country_list_itemCreate Country List Item
- persona.create_phone_number_list_itemCreate Phone Number List Item
- persona.create_an_ip_address_list_itemCreate IP Address List Item
- persona.create_email_address_list_itemCreate Email Address List Item
- persona.create_government_id_number_list_itemCreate Government ID Number List Item
- persona.set_tagsSet Tags on Account
- persona.clone_webhookClone Webhook
destructive
12Delete, cancel or archive. Ask first, or deny outright.
- persona.archive_a_webhookArchive a webhook
- persona.remove_account_tagRemove Account Tag
- persona.archive_a_name_list_itemArchive a Name List Item
- persona.archive_string_list_itemArchive String List Item
- persona.archive_a_country_list_itemArchive Country List Item
- persona.archive_ip_address_list_itemArchive IP Address List Item
- persona.archive_phone_number_list_itemArchive Phone Number List Item
- persona.archive_a_geolocation_list_itemArchive a Geolocation List Item
- persona.archive_email_address_list_itemArchive Email Address List Item
- persona.archive_a_browser_fingerprint_list_itemArchive Browser Fingerprint List Item
- persona.archive_a_government_id_number_list_itemArchive Government ID Number List Item
- persona.disable_webhookDisable Webhook
Persona in three steps.
- 01Your users connect PersonaThey add their Persona api key on Arc0 Connect, under your brand. It goes straight into the vault.
- 02You set the rulesReads run, writes like “create Webhook” can wait for the user, and “archive a webhook” can be denied outright.
- 03Any agent can actYour agent calls Persona through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('persona', { read: 'allow', write: 'ask', // create_webhook destructive: 'deny', // archive_a_webhook }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Persona connects.
Users add their Persona api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
The same Persona connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- API key
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Persona from any agent.
More security and identity apps.
Persona and Arc0, answered.
Can I use Persona with Claude, ChatGPT or Cursor?
Yes. Connect Persona to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Persona actions you allow.
How do users connect Persona?
Users add their Persona api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
Which Persona actions can my agent take?
69 in total: 32 read, 25 write and 12 destructive, such as “create Webhook”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Persona?
Yes. Actions like “archive a webhook” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Persona too?
Yes. The same Persona connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Persona into your agent.
Your users connect Persona once, under your brand. Your agent gets 69 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan