Skip to content
MCP · Agents

Your inbox, in the agents you already use.

Conduit runs a hosted MCP server. Add one URL to your agent, sign in to Conduit in your browser, and choose what the agent may do. Every call is logged, and one click in Settings cuts it off.

Get early access
https://connect.conduitmail.app/mcp

MCP comes with Plus and Pro. Conduit is in early access, so new accounts open from the waitlist.

Agents that connect

Plain names, no logos: each one belongs to its maker. A card opens that maker's own page on adding a custom MCP server.

ChatGPT and Perplexity need a paid plan for custom connectors, and Gemini's are for personal Google accounts in the US. Check the maker's docs.

Not listed? If your agent can add a remote MCP server by URL and sign in with OAuth, it should connect. Tell us how it went at support@conduitmail.app.

Product names are trademarks of their owners, listed to describe compatibility. No endorsement implied.

How connecting works

  1. 01

    Add one URL

    Paste the server URL where your agent adds MCP servers, or run its add command below.

  2. 02

    Sign in to Conduit

    Your browser opens Conduit's sign-in, OAuth 2.1 with PKCE. There's no API key to copy or paste.

  3. 03

    Choose what it may do

    A checkbox for each scope the agent asks for: read, write, rules, notes. The grant covers every mailbox you've linked to Conduit.

  4. 04

    Cut it off anytime

    Settings › Integrations › Connected apps › Revoke. The agent's next call fails.

Terminal
claude mcp add --transport http conduit https://connect.conduitmail.app/mcp
Terminal
codex mcp add conduit --url https://connect.conduitmail.app/mcp
codex mcp login conduit
~/.gemini/settings.json
{
  "mcpServers": {
    "conduit": { "httpUrl": "https://connect.conduitmail.app/mcp" }
  }
}
.vscode/mcp.json
{
  "servers": {
    "conduit": { "type": "http", "url": "https://connect.conduitmail.app/mcp" }
  }
}
Add a remote server (Streamable HTTP). Sign-in starts on its own.
https://connect.conduitmail.app/mcp
Conduit's consent screen: the agent asking to connect, the address the authorization is sent to, and a checkbox for each of four scopes: read, write, rules and notes
Consent: pick scopes, approve in the browser.
Settings, Integrations, Connected apps: three agents, each with its scopes, when it was last used, Activity and Revoke; the first agent's recent tool calls are open
Connected apps: each agent's calls, and Revoke.

What an agent can do

  • email:read

    Read and search

    Search, open messages (and whole threads on Gmail), read attachments up to 5 MB, and list folders and accounts. Full message bodies arrive marked as untrusted content.

  • email:write

    Organize, reversibly

    Mark read or unread, star, archive and move mail to Trash, up to 50 messages a call, or mark a whole folder read. Labels work on Gmail.

  • email:write

    Draft, reply and send

    Drafts by default. Direct sending is a switch you turn on in Settings. By default it allows 50 sends a day and holds each one for 60 seconds, so the agent can cancel it.

  • rules:manage · notes:manage

    Rules and notes

    Create, pause and delete your automation rules, and create and edit your notes. A rule an agent writes can't trash, archive or call a webhook.

  • email:write · off by default

    Block senders

    Block one address across all your accounts. New mail from it moves to Trash as it syncs. Older mail stays put, and only you can unblock, in Conduit.

  • withheld

    What it can't do

    Delete received mail forever, move it into folders of its choosing, delete labels, turn on its own sending, or see your mailbox passwords.

Consent and safety

  1. 01Sign-in happens in your browser, with OAuth 2.1 and PKCE. Agents never see your Google or mail password.
  2. 02You choose scopes on the consent screen. The grant covers every mailbox you've linked.
  3. 03Drafts by default. Sending is a separate switch, capped, and by default held for 60 seconds before it goes out, so the agent can cancel a send.
  4. 04What an agent does to received mail can be undone: Trash (until your provider empties it), archive, labels and blocks. A sent message after its hold, and a deleted draft, can't.
  5. 05Full message bodies reach the agent wrapped in untrusted-content markers, a defense against instructions hidden in email.
  6. 06Every tool call is logged for 90 days, and Settings shows each agent's latest 100 calls.
  7. 07Revoke in one click. The agent's next call fails.

Questions people actually ask

Which agents work?

Any agent that can add a remote MCP server by URL and sign in with OAuth. The list above links each one to its maker's own page on adding a custom MCP server.

Does the agent see all my accounts?

Yes. A connection covers every mailbox linked to Conduit. Scopes decide what it can do, not which accounts it reaches.

Can an agent send email as me?

Only after you turn on sending in Settings. Until then it writes drafts, and you send them from Conduit.

Where does my mail go when an agent reads it?

To the agent you connected, under your agreement with its maker. Conduit returns what each tool call asks for, within your scopes.

Is my mail used to train models?

Not by Conduit or Conduit's AI providers. The agent you connect follows its maker's terms, which you choose when you pick the agent.

What does it cost?

MCP comes with Plus and Pro. Conduit is in early access, and new accounts open from the waitlist.

Connect your agent.

One URL, a browser sign-in, and the scopes you choose.

Get early accesshttps://connect.conduitmail.app/mcp