OAUTH 2.1
MARKETING
Connect to Brevo MCP. Manage email and SMS campaigns, transactional emails, contacts, lists, automations, and loyalty programs from your AI workflows.
For more tools, view docs.
from langchain_mcp_adapters.client import MultiServerMCPClient
from scalekit import ScalekitClient
client = ScalekitClient(env_url=ENV_URL, client_id=CLIENT_ID, client_secret=SECRET)
token = client.agent.get_token(user_id="user_id", connector="brevomcp")
mcp = MultiServerMCPClient({
"brevomcp": {
"url": "https://mcp.scalekit.com/brevomcp",
"headers": {"Authorization": "Bearer " + token}
}
})
tools = await mcp.get_tools()import OpenAI from "openai";
import { ScalekitClient } from "@scalekit-sdk/node";
const client = new ScalekitClient({ envUrl, clientId, clientSecret });
const token = await client.agent.getToken({ userId: "user_id", connector: "brevomcp" });
const openai = new OpenAI();
// Connect to MCP at https://mcp.scalekit.com/brevomcp
// Pass: Authorization: Bearer + tokenimport Anthropic from "@anthropic-ai/sdk";
import { ScalekitClient } from "@scalekit-sdk/node";
const client = new ScalekitClient({ envUrl, clientId, clientSecret });
const token = await client.agent.getToken({ userId: "user_id", connector: "brevomcp" });
const anthropic = new Anthropic();
// Connect to MCP at https://mcp.scalekit.com/brevomcp
// Pass: Authorization: Bearer + tokenfrom google.adk.agents import LlmAgent
from scalekit import ScalekitClient
client = ScalekitClient(env_url=ENV_URL, client_id=CLIENT_ID, client_secret=SECRET)
token = client.agent.get_token(user_id="user_id", connector="brevomcp")
# Connect to MCP at https://mcp.scalekit.com/brevomcp
# Pass: Authorization: Bearer + token// shared token
audit → bot_service_account
// scalekit
audit → user_abc ✓Does the agent access Brevo as the user or as a shared key?
As the user. Each workspace member authorizes once and Scalekit resolves their credential at request time. Audit logs attribute every action to that user, not a shared service account.
Where is the Brevo OAuth token stored?
In Scalekit's managed AES-256 token vault, namespaced per tenant. Refresh is automatic. Revocation is a single dashboard action. Tokens never appear in prompts, logs, or LLM context.
Can I limit what the agent is allowed to do in Brevo?
Yes. Pass a tool name filter to listScopedTools so the marketing agent only sees the subset you authorize. Pre-API-call scope checks block out-of-policy actions before the request reaches Brevo.
What happens when a user revokes Brevo access?
The connection is invalidated on the next tool call. Subsequent requests for that user fail closed with a clear error. Other users in the tenant remain unaffected. The event is logged for audit.
Can the agent send campaigns or manage sub-accounts?
Only with the authorizing user's Brevo role. Campaign sends, contact changes, and corporate sub-account tools follow that user's permissions, and send tools can be filtered out for analytics-only agents.
What other MCP connectors does Scalekit support?
Scalekit runs the Vibe Prospecting MCP server, StoreLeads MCP server, and Profound MCP server on the same per-user auth, token vault, and audit trail. Browse 500+ connectors in the MCP connector directory.