# Customer assistant agent access Agent Card: https://app.goavenue.co/api/chatbot/lex/agent-card A2A 1.0 JSON-RPC: https://app.goavenue.co/api/chatbot/lex/a2a OpenAPI: https://app.goavenue.co/api/chatbot/lex/openapi Browser chat: https://app.goavenue.co/c/lex 1. POST https://app.goavenue.co/api/chatbot/lex/agent-sessions with JSON {"clientName":"Your agent name"} to start a new conversation. No model is called during bootstrap. 2. Use the returned accessToken as Authorization: Bearer . It is scoped to one conversation and expires in one hour. Keep it private. 3. For plain JSON, POST https://app.goavenue.co/api/chatbot/lex/chat with {"conversationId":"returned ID","messageId":"unique stable UUID","message":"your question","responseMode":"json"}. 4. For A2A, send the A2A-Version: 1.0 header. SendMessage and SendStreamingMessage support text parts, a stable messageId, and the returned contextId. Tasks are synchronous; background returnImmediately and push notifications are unsupported. 5. Retry a message with the SAME messageId and identical text. A completed request returns its saved result. Busy or interrupted requests must be inspected with GetTask; never assign a new ID to blindly repeat an uncertain action. 6. GetTask, ListTasks, CancelTask, and SubscribeToTask are scoped to the authenticated conversation and agent session. Streams last at most 110 seconds; reconnect to a task to recover its saved state. Cancellation is cooperative and does not undo completed actions. ## Continuing the visitor's existing chat The visitor opens Connect an agent in the chat, selects allowed actions, and shares a one-use code that expires after two minutes. POST https://app.goavenue.co/api/chatbot/lex/agent-sessions with {"clientName":"Your agent name","delegationCode":"the code"}. Never ask for the visitor's permanent credential. The grant allows reading this conversation's visible history and chatting, plus only the chosen CRM actions. The visitor can revoke access at any time. Names are self-reported, not verified identity. Handoff links for browsers are separate and must not be redeemed by external agents. Use POST https://app.goavenue.co/api/chatbot/lex/history with your bearer token to read visible history. It returns at most 100 messages; pass nextCursor as before to load older messages. Internal prompts, CRM records, and private tools are never available. Discovery depends on the visiting agent following links or checking a card. Installing a widget does not guarantee every agent will discover or use it.