Point any AI agent at your brand.
One bearer token connects Claude, Cursor, or any MCP client to a bounded, read-only cut of your Brand DNA, so an agent stops guessing your voice and reads it. That connection is one half of Jinn Agents. The other half is a roster of 25 marketing agents across four divisions, plus a growing catalog of installable skills, all sharper the moment they are grounded on your brand. This page walks the mechanism and the honest boundary drawn in code, what a public token can read and everything it structurally cannot, and then the roster that reads through it. The projection an agent reads is a curated view of the same verified brand record as every Jinn product: how the record works.
A stranger’s agent can hold a demo token and read the showcase brands today, no signup and no card. The owned-brand path, where you mint keys for your own brand, is wired and waiting on its launch gates.
Any MCP client. One bearer token is all an agent needs to reach your brand context, so Claude, Cursor, or your own tooling can read the same record instead of each hallucinating its own version of you.
A curated projection of your record: your identity, your voice rules including the words you never use, and your positioning. Five read-only tools, no more.
Your competitive intelligence, your pricing, and your product internals are excluded from the public projection by omission, and tests assert they stay out. A self-serve token cannot see them at all.
The demo. A single request mints a token scoped to three showcase brands, with no account, that expires in sixty minutes. Real, unauthenticated, and live right now.
Token in, bounded brand context out.
Four steps, and the boundary is enforced on the server every time, not trusted to whatever a client sends. The demo path below is real and unauthenticated today.
- RequestA single request mints a bearer token. For the demo there is no signup and no card: the token is scoped to three showcase brands and expires in sixty minutes. This path is live today.
- IntrospectBefore it reads anything, an agent calls one tool to see its own permissions: which brands it may read and at what access. The agent learns its own limits from the token, rather than probing to find them.
- ReadIt reads the bounded public projection: the brand’s identity, voice rules, and positioning, plus the design system as markup and as tokens. Five read-only tools, and nothing that writes.
- Stay boundedA brand outside the token’s allowlist reads back identical to a brand that does not exist, so a token cannot fish for what it was not granted. Escalation is impossible by construction, not by policy.
Every self-serve token is pinned to public audience and read-only scopes on the server, whatever a route forwards. There is no scope parameter for a client to forge.
Five tools, all read-only.
A public token can call exactly these, and each one only reads. There is nothing here that changes your record or spends anything.
- Check the connectionA ping tool confirms the agent is connected and the token is valid before it tries to read anything real.
- Read its own permissionsA context tool tells the agent which brands the token may read and at what access, so it operates inside its limits by design.
- Read the design systemTwo tools return your design system: one as agent-readable markup, one as raw design tokens, so a coding agent can build on-brand without a human pasting a style guide.
- Read the public brand cutOne tool returns the bounded brand projection: identity, voice rules including banned words, and positioning. It is a curated view of the record, never the whole thing.
Bounded on purpose, and asserted by tests.
The interesting part of a public brand surface is what it refuses to expose. Here the refusal is structural.
What a paid token adds, and what it does not.
Bringing your own brand does not unlock a bigger toolbox. A paying customer’s token reads through the same five public tools as a demo token; it is just scoped to your own brand and does not expire in an hour. The mint panel for those keys is real, wired behind ownership and entitlement, and it is the next thing to go live rather than a demo you can run today.
The deeper tools, the full Brand DNA, the brand kit, the finished deliverables, are internal-audience only and are minted by an operator, never reached by any self-serve token. And there is no tier that buys more tools: tier is wired in the code but no tool gates on it today, so there is no deeper paid rung to climb into. The page will say what is true, which is that the reach is the same and the scope is the difference.
The other half: agents and skills that sharpen when grounded.
The gateway is one half of Jinn Agents. The other half is the work itself: a roster of 25 marketing agents across four divisions, and a growing catalog of installable skills. They are not extra tools bolted onto your token. They are agents and skills you run inside your own client, and they get sharper the moment they are grounded: point one at your brand over this same MCP connection and it works from your verified facts instead of the average of everyone else.
- Marketing (7)Brand and go-to-market strategy, positioning, lifecycle, campaigns, audience insight, and launch. The agents that decide where the brand plays and how a launch is sequenced.
- Brand (6)Guardian, voice steward, naming, architecture, rebrand, and storytelling. The agents that hold the brand’s register and keep every asset on-strategy.
- Content (6)Strategy, copy, editing, social, email, and SEO. The agents that turn the plan into words that sound like you.
- Design (6)Art direction, brand and systems design, packaging, web, and motion. The agents that carry the look across every surface.
Grounded agents make grounded calls. A skill sharpens because it reads your brand through the same bounded, read-only connection this page describes, not because a tier unlocks a deeper tool. The gateway surface stays exactly five public read-only tools, and the skills are yours to install.
Bounded by construction, not by trust.
Agents sit on the record.
The brand record an agent reads a curated cut of is shared substrate, documented once and linked here rather than re-explained on every product page. The terms this page leans on are defined in the dictionary.
The questions people ask.
- Can a stranger really read my brand?
- The demo reads showcase brands, not yours. Anyone can mint a sixty-minute demo token, with no account, scoped to three showcase brands, and point an agent at it. Your own brand is only ever readable through a token you own.
- What can a token never see?
- The public projection is a curated cut of your record: identity, voice, and positioning. Your competitive intelligence, pricing, and product internals are excluded by omission and tests assert they stay out. A self-serve token cannot reach them.
- Do higher tiers unlock more tools?
- No. There is no tier that buys deeper tools today. A paid token reads through the same five public tools as a demo token; the difference is that it is scoped to your own brand and does not expire, not that it can do more.
- Can an agent get to my full Brand DNA or my deliverables?
- Not through any self-serve token. The deeper tools are internal-audience only, minted by an operator, and never reachable by a demo or a paid customer token. The public surface is deliberately five read-only tools.
- Can I mint keys for my own brand yet?
- The owner mint panel is built and wired behind ownership and entitlement, and it is finishing its launch gates. Until then, request early access and try the mechanism with the live demo token.
Give your agents the real brand, not a guess.
One token, a curated cut of your record, five read-only tools, and a boundary enforced in code. Try it with a demo, then bring your own brand.