Browse the docs
Bring your own auth
How Destaris uses your own credentials for AI, email, and providers.
Destaris orchestrates; you own the accounts. For anything that costs money or carries abuse risk, you bring your own credentials — and they stay on your machine.
AI vendors
AI steps run as your own already-authenticated CLI (Claude Code today; others over time). You're signed in once, as yourself, and Destaris uses that session. Your keys live in your environment and your OS keychain — Destaris never stores or proxies them.
Email and other providers
The same principle generalizes. To send email, you connect your own provider (for example Resend or SMTP); the key goes in your OS keychain. Future provider nodes (SMS, chat) work the same way: you hold the account, Destaris drives it.
Because the account is yours, the per-message cost, the deliverability, and the abuse surface all sit with your provider — there's nothing for Destaris to meter, and no shared sending reputation to protect.
What this means in practice
- Nothing custodied. Credentials never leave your machine.
- No resold tokens. You pay your vendors directly, at their price.
- No usage tax. A meter only ever attaches to a resource Destaris itself provides — never to running your workflows or to a provider account you own.