Your inbox, in the agents you already use.
Conduit runs a hosted MCP server. Add one URL to your agent, sign in to Conduit in your browser, and choose what the agent may do. Every call is logged, and one click in Settings cuts it off.
MCP comes with Plus and Pro. Conduit is in early access, so new accounts open from the waitlist.
Agents that connect
Plain names, no logos: each one belongs to its maker. A card opens that maker's own page on adding a custom MCP server.
- ClaudeWeb, desktop, mobileCustom connectors (opens in a new tab)
- ChatGPTWebDeveloper mode (opens in a new tab)
- GeminiWeb and mobileConnected Apps (opens in a new tab)
- PerplexityWebCustom connector (opens in a new tab)
- GitHub CopilotEditor (VS Code)MCP: Add Server (opens in a new tab)
- Claude CodeTerminalclaude mcp add (opens in a new tab)
- Codex CLITerminalcodex mcp add (opens in a new tab)
- Gemini CLITerminalgemini mcp add (opens in a new tab)
- Grok BuildTerminalgrok mcp add (opens in a new tab)
- Muse CodeTerminalmcp_servers (opens in a new tab)
ChatGPT and Perplexity need a paid plan for custom connectors, and Gemini's are for personal Google accounts in the US. Check the maker's docs.
Not listed? If your agent can add a remote MCP server by URL and sign in with OAuth, it should connect. Tell us how it went at support@conduitmail.app.
Product names are trademarks of their owners, listed to describe compatibility. No endorsement implied.
How connecting works
- 01
Add one URL
Paste the server URL where your agent adds MCP servers, or run its add command below.
- 02
Sign in to Conduit
Your browser opens Conduit's sign-in, OAuth 2.1 with PKCE. There's no API key to copy or paste.
- 03
Choose what it may do
A checkbox for each scope the agent asks for: read, write, rules, notes. The grant covers every mailbox you've linked to Conduit.
- 04
Cut it off anytime
Settings › Integrations › Connected apps › Revoke. The agent's next call fails.
claude mcp add --transport http conduit https://connect.conduitmail.app/mcpcodex mcp add conduit --url https://connect.conduitmail.app/mcp
codex mcp login conduit{
"mcpServers": {
"conduit": { "httpUrl": "https://connect.conduitmail.app/mcp" }
}
}{
"servers": {
"conduit": { "type": "http", "url": "https://connect.conduitmail.app/mcp" }
}
}https://connect.conduitmail.app/mcp

What an agent can do
- email:read
Read and search
Search, open messages (and whole threads on Gmail), read attachments up to 5 MB, and list folders and accounts. Full message bodies arrive marked as untrusted content.
- email:write
Organize, reversibly
Mark read or unread, star, archive and move mail to Trash, up to 50 messages a call, or mark a whole folder read. Labels work on Gmail.
- email:write
Draft, reply and send
Drafts by default. Direct sending is a switch you turn on in Settings. By default it allows 50 sends a day and holds each one for 60 seconds, so the agent can cancel it.
- rules:manage · notes:manage
Rules and notes
Create, pause and delete your automation rules, and create and edit your notes. A rule an agent writes can't trash, archive or call a webhook.
- email:write · off by default
Block senders
Block one address across all your accounts. New mail from it moves to Trash as it syncs. Older mail stays put, and only you can unblock, in Conduit.
- withheld
What it can't do
Delete received mail forever, move it into folders of its choosing, delete labels, turn on its own sending, or see your mailbox passwords.
Consent and safety
- 01Sign-in happens in your browser, with OAuth 2.1 and PKCE. Agents never see your Google or mail password.
- 02You choose scopes on the consent screen. The grant covers every mailbox you've linked.
- 03Drafts by default. Sending is a separate switch, capped, and by default held for 60 seconds before it goes out, so the agent can cancel a send.
- 04What an agent does to received mail can be undone: Trash (until your provider empties it), archive, labels and blocks. A sent message after its hold, and a deleted draft, can't.
- 05Full message bodies reach the agent wrapped in untrusted-content markers, a defense against instructions hidden in email.
- 06Every tool call is logged for 90 days, and Settings shows each agent's latest 100 calls.
- 07Revoke in one click. The agent's next call fails.
Questions people actually ask
Which agents work?
Any agent that can add a remote MCP server by URL and sign in with OAuth. The list above links each one to its maker's own page on adding a custom MCP server.
Does the agent see all my accounts?
Yes. A connection covers every mailbox linked to Conduit. Scopes decide what it can do, not which accounts it reaches.
Can an agent send email as me?
Only after you turn on sending in Settings. Until then it writes drafts, and you send them from Conduit.
Where does my mail go when an agent reads it?
To the agent you connected, under your agreement with its maker. Conduit returns what each tool call asks for, within your scopes.
Is my mail used to train models?
Not by Conduit or Conduit's AI providers. The agent you connect follows its maker's terms, which you choose when you pick the agent.
What does it cost?
MCP comes with Plus and Pro. Conduit is in early access, and new accounts open from the waitlist.
Connect your agent.
One URL, a browser sign-in, and the scopes you choose.