cal.com agents that prepare every meeting

Paste one cal.com API key. Qoren registers the webhooks, wakes an agent when a meeting is booked, requested, rescheduled or cancelled, and lets it read bookings and their form answers.

Request early accessSee pricing

Integrations is in early access: Qoren is turning it on account by account. Already have access? Open Integrations

How do I connect cal.com to an AI agent?

Create an API key in cal.com under Settings > Developer > API keys and paste it in Qoren. Pick an event such as Booking created and grant an agent access. The agent can list upcoming bookings and read a booking with its form answers. Cancelling or rescheduling a booking emails the attendees, so it always waits for your approval.

What agents do with cal.com

Example jobs, each built only from the events and tools listed further down. Write the agent's rules in plain words; these are starting points, not presets.

For agencies running it for clients

  • A brief before every sales call

    When a prospect books a call with a client, the agent reads the booking form, researches the person and their company and sends the client a one-page brief before the meeting.

    Wakes on
    Booking created
    Uses
    Read a booking
  • Win back cancelled meetings

    When a booking is cancelled, the agent drafts a short note offering new times. Moving the booking itself waits for approval, because cal.com emails the attendees.

    Wakes on
    Booking cancelled
    Uses
    Read a booking
    Reschedule a booking

For founders running it for themselves

  • Your day's meetings, every morning

    On a schedule, the agent lists your upcoming bookings and sends you who you are meeting and what they told you in the booking form.

    Uses
    List upcoming bookings
    Read a booking
  • Requests that need you

    When someone books an event type that needs your confirmation, the agent tells you who it is and what they want, so you can accept it quickly.

    Wakes on
    Booking requested
    Uses
    Read a booking

The path one event takes

4 cal.com events that can wake an agent

Pick one on an agent's Triggers tab. Each event can arrive on its own, as a digest, or as the latest state of a record, and events that do not match your conditions are logged as Filtered, with no turn and no charge.

EventWhen it fires
Booking createdSomeone books a meeting with you (or it is confirmed after you accept it).
Booking requestedSomeone books an event type that needs your confirmation, and it waits for you to accept it.
Booking rescheduledA booking moves to another time.
Booking cancelledA booking is cancelled, by you or by the attendee.

4 tools agents can use

Curated cal.com tools, not a raw API: each returns only the fields the job needs. A read only grant never gets a write tool, and tools marked Always asks wait for a person's approval whatever the agent's autonomy setting.

ToolWhat it doesAccessApproval
List upcoming bookingsList your upcoming cal.com bookings, soonest first, at most 20. Returns uid, title, time, status and attendees.ReadNone
Read a bookingRead one cal.com booking: title, time, status, location, attendees and the booking form's answers.ReadNone
Cancel a bookingCancel a cal.com booking. cal.com emails the attendees. Always asks a person to approve first.WriteAlways asks
Reschedule a bookingMove a cal.com booking to a new start time. cal.com emails the attendees. Always asks a person to approve first.WriteAlways asks

How connecting cal.com works

  1. 01Make a cal.com key with the least access it needs, following the guide below. Only the account owner can connect a tool.
  2. 02Paste it in Qoren. Qoren checks it before saving: which account it belongs to, what it can do and, where cal.com says, when it expires.
  3. 03Give an agent access, read only or read and write. An agent cannot use a tool it was not given.
  4. 04Pick the events that should wake the agent. Qoren registers the cal.com webhook itself, so there is no URL or signing secret to copy.

Making the cal.com key

  1. 1

    Create an API key

    In cal.com, open Settings > Developer > API keys and choose Add. Name it Qoren.

    Qoren's connect dialog links straight to this page in cal.com.

  2. 2

    Choose how long it lasts

    Pick Never expires, or note the date you choose: cal.com does not tell Qoren when a key expires.

  3. 3

    Paste the key here

    Copy the key (it starts with cal_live_) and paste it here. cal.com keys cannot be limited, so Qoren keeps agents to the level you grant. Never send the key by email or chat.

cal.com setup guide, with screenshots

Connecting a client's account? Send a link

An agency does not need its client's key. Send a connect link instead: it shows your agency's name and the exact permissions to tick, works once, expires after 7 days and can be revoked. The client pastes the key on that page, Qoren encrypts it on arrival, and you only ever see its last four characters. A client's connection is used only by that client's agents. Connect links come with Clients, on the Ultimate, Business and Enterprise plans.

Client connect links

Security in plain words

  • Keys never reach the agent's machine

    The cal.com key is encrypted at rest with AES-256-GCM and used only inside Qoren's own calls to cal.com. It is never written to the agent's environment, and after you connect only its last four characters are shown.

  • Read only until you say otherwise

    Each agent gets read only or read and write access, granted one agent at a time. cal.com keys cannot be limited, so Qoren's own tools are what keep a read only agent read only.

  • Risky actions always ask

    In cal.com, these always wait for a person's approval, whatever the agent's autonomy setting: cancel a booking and reschedule a booking.

  • Capped reads and a full audit log

    By default an agent reads at most 500 records an hour from one connection. Every call, read or write, lands in the audit log with the agent, the tool and the record ids.

  • Event data is treated as data

    Events reach the agent fenced off as data, with a warning not to follow instructions inside them. For 30 minutes after an agent reads connected data, a Qoren tool that would send it outside your account waits for your approval.

  • Stored events expire

    Qoren keeps event bodies for 7 days on Starter, 30 on Pro, 90 on Ultimate and 180 on Business, then removes them and keeps only the metadata.

cal.com limits worth knowing

When you disconnect, Qoren cannot revoke the key at cal.com, so it tells you where to delete it. In cal.com, open Settings > Developer > API keys and delete the key.

  • cal.com keys cannot be limited, so a key can do everything its user can. Qoren keeps agents to the level you grant.
  • cal.com does not tell Qoren when a key expires. Choose Never expires, or note the date.
  • cal.com does not document retries. For Booking created, Qoren's daily check delivers bookings a webhook missed, up to 3 days back.

Frequently asked questions

Can I limit what the cal.com key can do?

No. cal.com API keys carry their user's full rights. Qoren enforces the level itself: an agent with read only access is never given the cancel or reschedule tools.

What if a booking webhook is missed?

For Booking created, Qoren's daily check reads the bookings created since the last delivery, up to 3 days back, and delivers any the agent did not get. A booking it already delivered is not sent twice.

Does my agent ever see the cal.com key?

No. Qoren encrypts the key as soon as it arrives and uses it only inside its own calls to cal.com. The key never reaches the agent's machine, is never shown again after you connect, and the agent only gets the results of the tools you allowed.

Can an agent cancel a booking without asking?

No. In cal.com, these tools always wait for a person's approval, whatever the agent's autonomy setting: cancel a booking and reschedule a booking. The approval shows the exact details the agent wants to send.

Approvals
What happens when I disconnect cal.com?

Qoren deletes the webhooks it registered, deletes the stored key, pauses the triggers that used it and removes stored event bodies. It cannot revoke a key at cal.com, so it shows you where to delete it: In cal.com, open Settings > Developer > API keys and delete the key.

What does the cal.com integration cost?

Connecting tools comes with every Qoren plan, with no limit on connections, once Integrations is on for your account. It is in early access for now, turned on account by account. An event that wakes an agent uses credits like any other agent turn, and each trigger has an hourly cap.

Qoren pricing

Connect cal.com once. Let agents handle the rest.

Integrations is in early access, turned on account by account. Request it and tell us how your agents should use cal.com.