Reference
Permissions and safety
SPREVA decides what an agent may do without you, on its own servers, whatever the app asks. You set the rules for each workspace.
Risk levels
Every call that changes something has a level:
- Low
- Reading: search, fetch, overview, analytics and reviewing a video. Always allowed.
- Medium
- Drafts, edits, scheduling at least an hour ahead, deleting drafts, changes to files, campaigns and queues, and Studio projects, edits and exports.
- High
- Publishing now, scheduling less than an hour ahead, deleting a published post, and spending the plan's AI allowance on a voice-over or a new image.
Allow, Ask first or Needs approval
For each level, the workspace chooses one of three modes, in SPREVA under Settings, then Agents:
- Allow: the call goes ahead.
- Ask first: the first call changes nothing and answers with a preview. The agent shows it to you, and a second call carries out exactly that preview.
- Needs approval: the call answers with a link, and a person with the right role approves or rejects the same preview in SPREVA. It is the only mode that proves a person saw it.
Unless you change them, low and medium are Allow and high is Ask first.
Previews and confirmations
A preview resolves every name, checks every account and freezes what would happen: which accounts, which files, which caption and when. Its confirmation, such as cf_83929, carries out that snapshot and nothing else. SPREVA does not look anything up again.
- A confirmation works once, within 10 minutes.
- If the post changed in between, the confirmation is refused and a new preview comes back.
- A preview of spending says what it spends in the plan's units, and what is left this month.
Revisions
Every answer about an object ends with its revision. A change to an existing post, file, campaign, queue or video carries the revision the agent last read. If someone changed it since, nothing is saved: the answer shows the current version, so the agent can apply its change again on top of it, or ask you.
Request ids
Apps repeat calls after a timeout. Every tool that changes something takes a request_id: the same one on a retry returns the first answer instead of doing the work again, so a repeat never makes a second post, a second export or a second charge. Without one, an identical call within 10 minutes is answered once.
What agents never see
- Your password. You sign in on SPREVA's own page, and the app only receives access to the workspace you chose.
- Your networks' credentials. The access SPREVA holds for Instagram, TikTok and the other networks is never part of an answer.
- Other workspaces. A connection reaches only the workspace you allowed. A link to another workspace is refused.
- Anything after you disconnect it. Removing an app under Settings, then Agents, ends its access.
Every action is on record
Settings, then Agents, lists the connected apps and what each one did recently. A post's history names the agent and the person it acted for, such as “Claude, for Rodolfo”.