# Pendra > Onay kuyruğu olan, çok ajanlı bir sosyal medya içerik üretim > hattı: LinkedIn, Bluesky, Telegram, Mastodon, Threads, Discord, Website. > Yapay zekâ ajanları içerik önerir; yayına giden tek yol > kullanıcının onayıdır. Hiçbir ajanın yayın yetkisi yoktur. ## Ne yapar - Ajanlar: Scout (onaylı kaynakları okur, web'de arar), Curator (eler), Writer (yazar), Responder (yorumlara cevap önerir), Analyst (sonuçlardan öğrenir; ilgi alanı ve kaynak önerir), Operator (stüdyo üretimlerine ve sağlayıcılara bakar). - Her öneri onay kuyruğuna düşer. Onay, düzenleme ve red bir insan eylemidir; red sebebi ajanlara geri beslenir. - Onay Telegram'dan da verilebilir. - Araçlar MCP üzerinden dışarı açıktır, yayın aracı yoktur. - Taslakları yazan model KULLANICININ kendi anahtarıyla çalışır; anahtar bir kez girilir ve bir daha geri okunmaz. Her aşamaya ayrı bir model atanabilir, istenirse platform başına ayrı; sıra: platforma özel atama, aşamanın genel ataması, kullanıcının deneme sırası. Hangi hesaba üretildiği bilinmiyorsa ilk basamak atlanır. - Bir üretim turunun bütün adımları tek bir kimlikle kaydedilir: hangi aşama, hangi model, hangi ayar, token, süre, hata. Koşmayan adım da sebebiyle görünür. Tam metin otuz gün saklanır. - MCP'den bağlanan bir istemcide taslağı İSTEMCİNİN kendi modeli yazar; Pendra orada hiçbir model seçmez ve bir anahtar gerekmez. ## Pendra'yı bir ajan olarak kullanacaksan Uç: https://pendra.onrender.com/mcp — HTTP taşıma. Başlıklar: X-Pendra-Agent (Scout | Curator | Writer | Responder | Analyst | Operator) zorunlu, ve kimlik için ikisinden biri: X-Pendra-Mcp-Key (kullanıcının panelden ürettiği kendi anahtarı) ya da Authorization: Bearer (OAuth 2.1 ile alınmış token; anahtarsız istek 401 ile birlikte WWW-Authenticate: resource_metadata alıyor ve keşif oradan başlıyor). Token'ın kapsamını onay ekranında insan seçiyor; kapsam dışı bir rol 403 insufficient_scope alıyor. İsteğe bağlı X-Pendra-Account bağlantıyı bir hesaba kilitler. Adreste ?agent= verilirse başlıktaki rolle aynı olmalı. Görebildiğin araçlar bu başlıktaki ajan adına bağlı; izin listende olmayan araç sana hiç gösterilmez. Öneri açan araçlar propose_ ile başlar. Adı get_, list_ ya da propose_ ile başlamayan araçlar okur, yalnızca kullanıcının kendi verisine yazar ya da panele salt okuma bir bağlantı açar: fetch_feed, open_review_session, rate_provider, save_finding, scan_inbox, score_finding, update_style_profile, web_search. Hiçbiri yayın yapmaz. Onaylama, düzenleme ve reddetme araçları yoktur ve eklenmeyecektir — onayın bir insan eylemine dayandığını garanti eden şey budur. Sıra: Scout -> Curator -> Writer -> insan kararı. Ajan başına VARSAYILAN araçlar (kullanıcı aşamalarını panelden düzenlemişse MCP'de kendi listesini görürsün): - Scout: web_search, fetch_feed, get_interest_profile, list_sources, save_finding - Curator: list_findings, list_past_posts, list_rejections, get_interest_profile, score_finding - Writer: list_accounts, get_account_profile, get_style_profile, get_finding, list_rejections, get_interest_profile, propose_post, propose_article, propose_article_update, propose_article_removal - Responder: list_accounts, get_account_profile, scan_inbox, list_notifications, get_comment_context, propose_comment_reply - Analyst: list_accounts, get_interest_profile, list_past_posts, get_post_stats, list_sources, update_style_profile, propose_interest_profile, propose_source - Operator: list_providers, list_studio_sessions, get_studio_session, list_accounts, get_account_profile, get_interest_profile, propose_studio_draft, propose_from_studio, rate_provider, list_experiments, get_experiment, open_review_session, get_workspace_scaffold fetch_feed yalnızca kullanıcının onayladığı kaynak listesinden getirir; listede olmayan adres ağa çıkmadan reddedilir. Karakterin tonu Pendra'da durmuyor. Pendra hangi hesap olduğunu bilir, nasıl yazılacağını değil. Önerilen yol kendine bir çalışma alanı kurmak ve kurulum tek komut: Operator bağlantısında MCP prompt'u pendra-init (Claude Code'da /mcp____pendra-init). get_workspace_scaffold her platform için bir klasör, altında her hesap için kısa adıyla bir klasör listeler; dosyaları istemci yazar. Hesap klasörünün bağlantısı X-Pendra-Account ile o hesaba kilitli, scout/ ayrı bir oturum. Zorunlu değil -- çalışma alanı olmadan da Pendra çalışır, yalnızca ton kaybolur. Ayrıntısı aşağıdaki teknik rehberde. Hesabın durumu Active değilse o hesaba üretim yapılmaz. list_accounts durumu ve sebebini birlikte döner. ## Sayfalar - [Nasıl çalışır (Türkçe)](https://pendra.onrender.com/nasil-calisir.html) - [How it works (English)](https://pendra.onrender.com/how-it-works.html) - [Ajanlar için teknik rehber (Türkçe)](https://pendra.onrender.com/ajanlar-icin.html) - [Technical guide for agents (English)](https://pendra.onrender.com/for-agents.html) ## In English Pendra is a multi-agent social media content pipeline built around an approval queue: LinkedIn, Bluesky, Telegram, Mastodon, Threads, Discord, Website. Agents propose; a human approves. No agent can publish -- there is no publishing tool on the MCP surface and none will be added. The model that writes the drafts runs on THE USER'S own key; the key is entered once and never read back. Each stage can be given its own model, and a different one per platform if wanted; the order is platform-specific assignment, the stage's general one, then the user's try order. When it is not known which account the draft is for, the first step is skipped. Every step of a run is recorded under one id -- which stage, which model, which setting, tokens, duration, error -- and a step that did not run shows up with its reason. The full text is kept for thirty days. On an MCP connection the draft is written by THE CLIENT'S own model; Pendra picks no model there and needs no key for it. MCP endpoint: https://pendra.onrender.com/mcp (HTTP transport). Headers: X-Pendra-Agent (Scout | Curator | Writer | Responder | Analyst | Operator) is required, and for identity one of two: X-Pendra-Mcp-Key (the user's own key, created in the panel) or Authorization: Bearer (an OAuth 2.1 token; a request without a key gets a 401 carrying WWW-Authenticate: resource_metadata, and discovery starts there). A token's scope is chosen by a human on the consent screen; a role outside it gets a 403 insufficient_scope. The optional X-Pendra-Account locks the connection to one account. If the address carries ?agent=, it must equal the role header. The tools you can see depend on that agent name; anything outside your allow-list is never shown to you. Tools that open a proposal start with propose_. Tools whose names start with none of get_, list_ or propose_ read, write only the user's own data, or open a read-only link to the panel: fetch_feed, open_review_session, rate_provider, save_finding, scan_inbox, score_finding, update_style_profile, web_search. None of them publishes. Order: Scout collects, Curator filters, Writer drafts, a human decides. The per-agent DEFAULT tool lists are above; a user who edited their stages exposes their own. fetch_feed only fetches from the sources the user approved. The character's tone does not live in Pendra. Pendra knows which account; how to write belongs in a markdown file in your own workspace. Setting it up is one command: the MCP prompt pendra-init on the Operator connection (/mcp____pendra-init in Claude Code). get_workspace_scaffold lists one folder per platform and one folder per account under it, named after the slug; the client writes the files. An account folder's connection is locked to that account with X-Pendra-Account; scout/ is a separate session. The workspace is recommended, not required: without it Pendra still works, you just lose the voice. Full details in the technical guide linked above.