cd /news/ai-agents/show-hn-app2api-give-your-ai-the-api… · home › topics › ai-agents › article
[ARTICLE · art-140074] src=app2api.com ↗ pub= topic=ai-agents verified=true sentiment=↑ positive

Show HN: App2Api – Give your AI the API behind your app

App2Api launched in free beta, capturing the real HTTPS API calls behind a mobile app workflow and returning a runnable flow.sh, an OpenAPI 3.1 spec, and an owner report so AI agents can call the app's API directly. The tool takes a plain-English goal, drives a live emulator with a vision planner to capture every HTTPS request including session bootstrap, tokens and attestation, and types credentials locally so they are never sent to a model. App2Api says it only accepts apps the requester owns or is explicitly authorized to test, and that each beta run is processed by hand, so results arrive by email after a queue-dependent wait.

read3 min views1 publishedSep 26, 2026
Show HN: App2Api – Give your AI the API behind your app
Image: source

Describe what you want your app to do, in plain English. App2Api captures the real API call behind it — login, tokens and all — and gives your AI agent an OpenAPI spec it can call.

Free during the beta. No card, no setup.

How it works

You don't get a dump of everything the app happened to touch. You describe one workflow, and App2Api walks it end to end — then hands you a call you can reproduce standalone.

Send the app and a plain-English goal — "trigger the loyalty lookup," "add an item to my cart." Any credentials are typed locally, never sent to a model.

A vision planner drives a live emulator toward that goal, capturing every HTTPS call the app makes along the way.

When the action fires, we find the request behind it and walk backward for everything it needs — session bootstrap, tokens, attestation.

A runnable flow.sh, an OpenAPI 3.1 spec, and an owner report. Monitoring is coming in beta, so you'll know the moment an update breaks the chain.

What you get

Every run hands back the same set — a call to run, a spec to build on, a report to share.

The runnable call with its full auth chain. Paste it into a terminal and it works standalone.

An OpenAPI 3.1 spec for the endpoints the workflow touched — drop it straight into your tooling.

A shareable report of the captured requests, ready to hand to a teammate or a client.

Who it's for

Whether you build the app, test it, or ship on top of it, App2Api turns its API into something you can depend on.

Document your own app's real API surface, catch undeclared endpoints, and get a contract you can test against every release.

Turn a manual workflow into a scripted, replayable call — and know the instant an app update changes the contract underneath it.

Trace auth chains and attestation flows on your engagements, with an owner report you can hand straight to the client.

FAQ

No. App2Api is for apps you own or are explicitly authorized to test. Every request includes an authorization confirmation, and we decline anything we can't reasonably believe is authorized.

A runnable flow.sh, an OpenAPI 3.1 spec, and an owner report — the endpoint you asked for plus the full auth chain needed to replay it standalone.

We email you the traced call once your run finishes. During the beta we run each request by hand, so depending on the queue it can take a little while — you don't need to resubmit.

Login flows are supported — credentials are typed locally at the keystroke and never sent to a model. Some hardened apps (for example ones shipping certain integrity protections) may not run in the emulator, and we'll tell you when that's the case.

Nothing during the beta. We run it on our own infrastructure and email you the result.

Free beta

Send us an app you're authorized to test and the goal you're after, and we'll email you the traced call once it's done. It's free during the beta — and depending on the queue, it can take a little while.

We'll run it and email you the traced call. Depending on the queue that can take a while, so no need to resubmit — just keep an eye on your inbox.

── more in #ai-agents 4 stories · sorted by recency
── more on @app2api 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
→ Live at https://your-agent.zahid.host ✓
Get free account → Pricing
from €0/mo · no card required
LIVE [news/show-hn-app2api-give…] indexed:0 read:3min 2026-09-26 · —