WorkOS Opens Relay Early Access to Keep AI Agent Credentials Server-Side
Summary
WorkOS opens Relay in early access, a forward HTTP proxy that attaches a user's provider credential server-side so AI agents can call third-party APIs without holding tokens themselves. WorkOS says requests cap at 5 MB, time out after 30 seconds, and return 402 with an authorization_url when no usable connection exists.
Key Points
- WorkOS says the WorkOS API key still authenticates each relay request and is stripped before forwarding upstream.
- Every proxied response carries an X-Relay-Upstream-Status header reporting the provider's own status code.
- WorkOS says relay does not follow redirects, returning redirect responses to the caller unchanged.