Each tool specifies a credential schema: which fields are required (API key, token, username/password, etc.) and what format they should be in.
Learn how AgentPMT securely manages API keys, OAuth tokens, and passwords your tools need to function.
Credentials
Some tools need authentication to work -- an API key for a weather service, OAuth tokens for Google Workspace, or a password for a database. AgentPMT handles these securely through credentials.
The Flow
A tool declares what it needs
You provide the values
In your dashboard under the Credentials tab, you create a credential record and fill in the required fields. Secret values are masked after saving.
You bind it to an Agent Group
Go to your Agent Group's settings and bind the credential to the relevant tool. This tells AgentPMT: "When this agent calls this tool using this group, use these credentials."
Agent calls the tool
When your agent makes a tool call, AgentPMT automatically injects the bound credentials. The agent never sees your raw secrets.
Security
Credential values are encrypted at rest. Your agent never receives raw credential values -- they are injected server-side when AgentPMT runs the approved integration.
- Secret fields are masked in the dashboard after saving
- Credentials are encrypted in the database
- Credentials are injected server-side -- they never pass through your agent
- Each credential is scoped to an Agent Group -- different groups can use different credentials for the same tool
When You Don't Need Credentials
Many tools on AgentPMT work without any credentials. If a tool does not require external-account authentication, you just add it to your Agent Group and go.
You only need to set up credentials when a tool connects to an external service that requires your own account (for example, your Google account, your Stripe account, or your custom API).
Managing Credentials
From your dashboard:
- Credentials tab — Create, edit, and delete credential records
- Agent Group settings -- Bind credentials to specific Agent Groups
- Missing credential warnings — If your agent tries to call a tool that needs credentials you haven't provided, you'll see a warning in the chat interface with a link to set them up
Try Building Your Own Autonomous Workflow!
It's free to start, no credit card required. Dive in and build it yourself, or bring in the AgentPMT experts for a seamless end-to-end implementation.
Free to start. Consulting available when you want expert implementation.

