> **Can't find what you're looking for?** Use `search_docs` on the docs MCP server at `https://docs.walletchan.com/api/mcp` to find what you need.

# Agent password

The agent password is a deliberately constrained second factor for local
automation. It is not a second master password.

## What it can do

When the relevant account and feature support it, an agent session can:

* Unlock WalletChan.
* Confirm ordinary transactions and message signatures.
* Confirm cross-dapp batches.
* Use canonical EIP-7702 setup or revocation.
* Revoke existing permissions.
* Perform ordinary eligible Safe owner actions.

Ledger still requires physical approval.

## What it cannot do

An agent password cannot:

* Reveal private keys, seed phrases, or Shield recovery phrase.
* Add/remove accounts or derive seed accounts.
* Change Bankr credentials.
* Change the master password or authentication factors.
* Create custom delegates.
* Grant new ERC-7715 reusable authority.
* Initialize or operate Privacy Shield authority.
* Reset the wallet.

These restrictions apply regardless of which signing account is active.

## Set up

Open **Settings → Security → Agent Password**. WalletChan asks for the current
master password even if you entered Settings through biometric unlock. Create
and confirm a unique agent password.

## Remove

Removal also requires master proof. If you suspect exposure, remove the factor,
manually lock WalletChan, and review active dapp, WalletConnect, token, and
delegated permissions.

## Guidance for AI agents

The agent password allows approval, not silent execution. The user should still
see and understand WalletChan's transaction/signature review. Do not place the
password in prompts, repositories, shell history, or remote agent services.

## Related guides

* [Understand master passwords and authorization](/security/passwords)
* [Set up biometric unlock](/security/biometric-unlock)
* [Compare allowed actions by account type](/reference/account-behavior)
* [Review dapp permission boundaries](/dapps/permissions)
