app marketplace

Extend your AI agents with custom tools.

Install ready-made apps from the catalog, 31 today including Shopify, Gorgias, Xero, MYOB, Google Workspace, and Microsoft 365, or build your own with the App Bridge SDK and the built-in IDE. V8 sandbox security, versioning, and one-click deployment.

sprigr · new workflow listening
Example run · 41 actions hover the gate to approve it yourself
the app marketplace back office

A catalog of ready-made apps you install in a couple of clicks, with human approval on sensitive actions and undo on the Shopify and Gorgias apps. A built-in IDE and the App Bridge SDK for building your own. V8 sandbox execution. Immutable versions with instant rollback. Four sharing tiers from private to certified.

You focus on the work. Sprigr runs the paperwork.

Tell your agent where your store lives: it installs the integration, your install link arrives from Sprigr, and the store connects with live webhooks.
what it handles
  • Built-in IDE
  • V8 sandbox security
  • Version management
  • Rate limiting
what it runs

Everything you need to build and manage agent tools

A complete platform for creating, testing, deploying, and sharing tools that extend what your AI agents can do.

  • Built-in Tool IDE

    A Monaco-based code editor with syntax highlighting, autocomplete, and error markers. Define input schemas with JSON Schema, test with sample data, and deploy, all without leaving the dashboard.

  • V8 sandbox security

    Every tool runs in an isolated V8 sandbox, the same technology behind Cloudflare Workers. No file system access, no cross-tool interference, and network requests restricted to declared domain allowlists.

  • Tool composition

    Tools can call other tools using tools.call(), enabling you to compose complex capabilities from smaller building blocks. Chain a weather check into a scheduling decision into a notification, each piece reusable independently.

  • Tag-based discovery

    Find tools by industry (trades, HVAC, plumbing), integration (simPRO, Xero, Gmail), or purpose (scheduling, invoicing, compliance). Combine filters across all dimensions to find exactly what you need.

  • Version management

    Every deployment creates an immutable version. Installers can pin to a specific version for stability, update to the latest when ready, or roll back instantly if something breaks. Zero-downtime deployments.

  • Rate limiting & circuit breakers

    Each tool is limited to 100 calls per minute per installation. If an external API goes down, circuit breakers automatically stop retrying until it recovers. Protects your systems and external services from overload.

the scope

Marketplace by the numbers

Sharing tiers, rate limits, and isolation built in from day one.

  • 4

    trust tiers for sharing

    Private (your company only), Shared (specific companies you invite), Listed (public marketplace catalog), and Certified (platform-approved with a badge). Change the tier at any time.

  • 100

    calls per minute per tool

    Every tool is rate-limited at 100 calls per minute per installation. Circuit breakers automatically stop calling a tool when its external dependency is failing.

  • V8

    isolated execution sandbox

    Same technology behind Cloudflare Workers. No file system access, no cross-tool state, no way for one tool to interfere with another or the platform.

how it starts

How it works

Three steps from idea to production tool.

  1. 01

    Write code in the IDE

    Open the built-in Tool IDE from your dashboard. Write a handler function using a Monaco editor with autocomplete, syntax highlighting, and a live console. Define your input schema and declare which external domains your tool needs to reach.

  2. 02

    Test and deploy

    Run your tool in a sandboxed environment with sample inputs and test secrets. Check the output, iterate on the logic, and deploy with one click. Each deploy creates a new immutable version with automatic rollback support.

  3. 03

    Agents use it

    Once deployed, your agents can call the tool during conversations and workflows. The agent sees the tool name, description, and schema, then decides when to invoke it based on conversation context. No manual wiring needed.

Every marketplace tool runs in an isolated V8 sandbox. A buggy or malicious tool cannot affect other tools, your agents, or the platform.

Read the security deep-dive →
questions

Questions

What is in the catalog today?

31 apps at the time of writing, including Shopify, Gorgias, Xero, MYOB, Google Workspace, Microsoft 365, Slack, simPRO, ServiceM8, Klaviyo, Asana, Cin7 Core, Starshipit, Procore, Meta Ads, Google Ads, Google Analytics, Search Console, Merchant Center, Microsoft Clarity, LinkedIn, Instagram, Motion, Real Estate (AU), Bunnings, Email (IMAP and POP), Voice, and Atlassian. Install one from the Apps page or ask your agent to install it in chat. Sensitive app actions such as sending, deleting, or paying go through human approval, and the Shopify and Gorgias apps support undo.

How do I build my own app?

Start in the built-in IDE for a single tool, or use the App Bridge SDK to ship a full app: a Next.js project with its own tools, settings page, webhooks, schedules, and per-install database, published with the Sprigr CLI. Apps start private and can be shared, listed, or certified when you are ready.

Is my code secure?

Yes. Every tool runs in an isolated V8 sandbox with no file system access and no ability to interact with other tools or the platform outside of its declared APIs. Network requests are restricted to domains you explicitly allowlist. Secrets are encrypted at rest and injected at runtime, they never appear in code, logs, or conversations.

Can I share tools with other companies?

Yes. Tools support four trust tiers: Private (your company only), Shared (specific companies you invite), Listed (public marketplace catalog), and Certified (platform-approved with a badge). You can change the tier at any time as your needs evolve.

What APIs can my tools access?

Your tools can make HTTP requests to any domain you declare in the network allowlist. This includes REST APIs, GraphQL endpoints, webhooks, and any other HTTP-accessible service. Requests to domains not on your list are blocked at runtime.

What happens if a tool fails?

If a tool throws an error, the agent receives the error message and can respond gracefully in the conversation. If a tool fails repeatedly (for example, due to a downstream API outage), circuit breakers automatically stop calling it for a cooldown period. Rate limiting prevents runaway loops at 100 calls per minute per installation.

Can I roll back to a previous version?

Yes. Every deployment creates an immutable version. If a new version introduces problems, installers can roll back to any previous version instantly from the app settings. You can also pin installations to a specific version to prevent automatic updates.

app marketplace

Ready to build custom tools for your agents?

Extend your AI agents with tools built for your industry and your systems.