Remote MCP
SenseInbox can expose an authenticated remote MCP endpoint with scoped, expiring, revocable tokens. The current tool surface is intentionally limited to mailbox/portfolio intelligence and planning.
| Tool class | Allowed |
|---|---|
| Portfolio overview / mailbox health | Yes |
| Create evidence snapshot / review plan | Yes |
| Request AI portfolio advice | Yes, when enabled |
| Archive / trash / move / label | No |
| Unsubscribe / automation mutation | No |
AI providers
Optional connectors are implemented for Cloudflare Workers AI, OpenAI, Anthropic and Gemini. External providers can use BYOK credentials encrypted at rest.
Derived-only payload policy
AI advice is advisory-only and designed around aggregate portfolio intelligence rather than raw mailbox content. Outbound receipts and policy gates can verify that prohibited fields are not sent.
Budgets and governance
Platform daily quotas and account-level monthly budgets can limit MCP calls, AI calls and outbound AI payload bytes. Account policies can tighten access but cannot loosen the platform ceiling.
Production rollout is gated
Connector production access moves through staging certification, signed promotion, canary, limited rollout and GA readiness. Provenance drift, privacy violations or critical incidents can close admission automatically.