Praxa

Product / Browser agent

When the web has no API, it uses the web.

For sites with no API, Praxa can act on the web itself, in a mode chosen for the task, and every committing action is matched against exactly what you approved.

Praxa acts on the web in one of three modes: a live panel on your phone using your own logins that you watch and can take over, a persistent background session that stays signed in, or a one-shot page read. Password values never enter the model or generic form tools; on your device, an approved credential bound to the live site's host can fill without exposing its value.

What it does

Trust built into how it drives

Your logins, your device

The live panel drives with the cookies already on your phone, not a session in someone else's cloud.

Secrets stay outside the model

Generic tools refuse password values. You can take over, or approve device fill for a credential bound to the live site's host; its value is never exposed to the model.

Matched, not just trusted

A single-use approval is bound to the exact action, target, and site. A retry or a mismatch is refused.

How it works

  1. Step 1: It picks the right mode

    A quick page read, a persistent signed-in session, or the live panel, chosen for the task.

  2. Step 2: You watch, or you don't

    The live panel shows every step on your phone, using your own cookies, and you can tap in and take over at any second.

  3. Step 3: Approval matches the action

    A commit, submitting a form or running a script, is refused unless it matches, action for action, site for site, what you approved.

What it does not do

  • The model never receives or types a password value. Generic tools refuse it; approved host-bound device fill can operate without disclosing it.
  • Every action that changes something is matched literally against what you approved, including the exact site it runs on.
  • The live panel is an iPhone feature. Web falls back to a persistent background session instead.
  • Voice and the on-device model do not have a browser at all.

Frequently asked questions

Are AI browser agents safe to use with my logins?

Praxa's live panel drives with your own device session and your own cookies, and you watch every step on your phone. You can tap in and take over at any moment, and anything that commits still requires your explicit, matched approval before it runs.

How do AI browser agents handle passwords and 2FA?

Praxa's model never receives or types a password value, and generic form tools refuse one. In the live panel you can take over, or approve the device to fill a credential already bound to that exact site's host without revealing it to the model. You handle any two-factor prompt in the panel.

Can I watch what an AI agent is doing in my browser?

Yes. The live panel is docked right in the chat on your iPhone, showing every step as it happens, using your own logins. You can scroll, tap, or type at any point, and the panel flags who is driving at any given moment.

How do I stop an AI browser agent from doing something I didn't approve?

Every committing action is refused unless it matches the exact approval you gave, the verb, the instruction, the target, and the site, used once. A mismatched or reused attempt is refused automatically, and you can take over the panel at any second regardless.

Can an AI agent buy things for me online?

Not on its own. Completing a purchase is a committing action, and commits always wait for your explicit approval matched to that exact step before anything happens, so the agent cannot check out or submit payment without you signing off first.

Watch it work the web.

Download for iPhone, or open Praxa on the web. Free while we are in beta.