Brevo MCP

Live

OAUTH 2.0

MARKETING

Marketing

Connect to Brevo MCP. Manage email and SMS campaigns, transactional emails, contacts, lists, automations, and loyalty programs from your AI workflows.

  • Acts as the user: Every tool call runs as the authorizing user. Access and audit trail stay intact.
  • Credentials stay vaulted: AES-256 encrypted, resolved at request time, never stored in LLM context.
  • Scoped before every call: Per-user permissions enforced automatically. 90-day audit trail included.
Brevo MCP
agent · Acme Q3
Run
Accounts Delete Corporate Sub Account By Id in Brevo MCP
S
brevomcp_accounts_delete_corporate_sub_account_by_id
85ms
Brevo MCP agent
Permanently deletes a sub-account from the corporate master account. once deleted, all data associated with the sub-acco.
Sources: Brevo MCP
brevomcpmcp
1 tool call
18:29
Message Claude...

Brevo MCP tools for AI agents

CALL ANY TOOL
12 tools covering accounts.
brevomcp_users_inviteuser
Users inviteuser
Invite a new user to the organization with specified feature permissions.
Parameters
Name
Type
Required
Description
all_features_access
string
Required
All access to the features
email
string
Required
Email address for the organization
privileges
string
Required
No description.
brevomcp_objects_getrecords
Objects getrecords
brevomcp_users_putresendcancelinvitation
Users putresendcancelinvitation
brevomcp_objects_upsertrecords
Objects upsertrecords
brevomcp_ips_get_ips
Ips get ips
brevomcp_lists_get_list
Lists get list
brevomcp_lists_get_lists
Lists get lists
brevomcp_events_get_events
Events get events
brevomcp_lists_create_list
Lists create list
brevomcp_domains_get_domains
Domains get domains
brevomcp_lists_delete_list
Lists delete list
brevomcp_events_create_event
Events create event
brevomcp_lists_update_list
Lists update list
brevomcp_folders_get_folders
Folders get folders
brevomcp_loyalty_delete_tier
Loyalty delete tier
brevomcp_senders_get_senders
Senders get senders
brevomcp_loyalty_update_tier
Loyalty update tier
brevomcp_accounts_get_account
Accounts get account
brevomcp_ecommerce_get_orders
Ecommerce get orders
brevomcp_companies_post_import
Companies post import
brevomcp_contacts_get_contacts
Contacts get contacts
brevomcp_domains_create_domain
Domains create domain
brevomcp_folders_create_folder
Folders create folder
brevomcp_domains_delete_domain
Domains delete domain
brevomcp_folders_delete_folder
Folders delete folder
brevomcp_loyalty_create_reward
Loyalty create reward
brevomcp_folders_update_folder
Folders update folder
brevomcp_processes_get_process
Processes get process
brevomcp_products_get_products
Products get products
brevomcp_segments_get_segments
Segments get segments
Build your Agent
Same auth pattern across every framework.
Python · LlamaIndex
from langchain_mcp_adapters.client import MultiServerMCPClient
from scalekit import ScalekitClient

client = ScalekitClient(env_url=ENV_URL, client_id=CLIENT_ID, client_secret=SECRET)
token = client.agent.get_token(user_id="user_id", connector="brevomcp")

mcp = MultiServerMCPClient({
"brevomcp": {
"url": "https://mcp.scalekit.com/brevomcp",
"headers": {"Authorization": "Bearer " + token}
}
})
tools = await mcp.get_tools()
import OpenAI from "openai";
import { ScalekitClient } from "@scalekit-sdk/node";

const client = new ScalekitClient({ envUrl, clientId, clientSecret });
const token = await client.agent.getToken({ userId: "user_id", connector: "brevomcp" });

const openai = new OpenAI();
// Connect to MCP at https://mcp.scalekit.com/brevomcp
// Pass: Authorization: Bearer + token
import Anthropic from "@anthropic-ai/sdk";
import { ScalekitClient } from "@scalekit-sdk/node";

const client = new ScalekitClient({ envUrl, clientId, clientSecret });
const token = await client.agent.getToken({ userId: "user_id", connector: "brevomcp" });

const anthropic = new Anthropic();
// Connect to MCP at https://mcp.scalekit.com/brevomcp
// Pass: Authorization: Bearer + token
from google.adk.agents import LlmAgent
from scalekit import ScalekitClient

client = ScalekitClient(env_url=ENV_URL, client_id=CLIENT_ID, client_secret=SECRET)
token = client.agent.get_token(user_id="user_id", connector="brevomcp")
# Connect to MCP at https://mcp.scalekit.com/brevomcp
# Pass: Authorization: Bearer + token
Try these prompts
Paste any prompt into your agent to get started.
Get started
Copy the prompt
Copied
Send a WhatsApp message to one or more contacts?
Copy the prompt
Copied
Retrieve a paginated list of individual WhatsApp event records (unaggregated), including event type, contact number, sen?
Advanced
Copy the prompt
Copied
Create a new WhatsApp message template with the specified name, language, category, and body text?
Copy the prompt
Copied
Update an existing WhatsApp campaign’s name, status, recipients, or scheduled sending time?
SEE HOW AUTH WORKS
User authorises once. Every agent call after uses their token with scope enforcement.
1
Authorize
Your user connects
Brevo MCP
once. We tie it to their identity and the meetings they approved — no shared bot account, no org-wide access
Who:
user ‘A’
when:
Once per user
access:
Limited to user
2
Store
Their
Brevo MCP
token lives in a vault scoped to them. User A's meetings are never reachable by an agent acting for user B, even on the same connection
vault:
encrypted
scope:
per-user
tokens:
auto-refreshed
3
Resolve
When your agent calls a
Brevo MCP
tool, we fetch the right token server-side. It never touches your agent, never appears in the LLM context, never shows up in your logs
speed:
~40ms
check:
before every call
seen by:
nobody
4
Audit
Every
Brevo MCP
tool call is logged — who triggered it, which meeting was fetched, what came back. 90 days of history, tied to the user who authorized it
history:
90 days
export:
SIEM-ready
logged:
every call
Test other agents
See the same per-user auth pattern across other connectors.
GTM and RevOps Teams
Outbound prospecting agent
Searches Apollo for prospects matching your ICP, scores and ranks them, drafts personalized outreach in Gmail, and logs every send to Google Sheets. Mail goes out as the rep, not from a shared inbox.
Support and Ops Teams
Email-to-calendar agent
Reads scheduling intent out of Gmail threads, resolves the times everyone actually has free, and creates the event on the user's own Google Calendar. No shared service account.
GTM and RevOps Teams
CRM AI agent
Reads the Granola transcript after every call, extracts next steps and updates the HubSpot record, drafts the follow-up in Gmail, and confirms in Slack, all on the rep's own delegated OAuth.
Support and Ops Teams
Freshdesk CSAT agent
Watches Freshdesk for resolved tickets, emails each requester a CSAT survey from Gmail, and writes the score and the verbatim back onto the ticket, every call on the support rep's own delegated OAuth.
Test other agents
See the same per-user auth pattern across other connectors.
SALES
Outbound prospecting agent
Search Apollo for ICP matches, rank them, draft personalised Gmail outreach, and log every send to Google Sheets.
OPS
Email-to-calendar scheduling agent
Read scheduling intent out of Gmail threads, resolve mutual free time, and create the Google Calendar event.
GTM
CRM AI agent
Turn each Granola call transcript into a HubSpot record update, a drafted Gmail follow-up, and a Slack recap.
SUPPORT
Freshdesk CSAT follow-up agent
Spot resolved Freshdesk tickets, email the CSAT survey from Gmail, and write the score back onto the ticket.
Why Scalekit
Secure your agent's access. Connectors ship in minutes
01.
Shared tokens break per-user analytics
A shared token looks fine in a demo. In production every call looks like a service account. Scalekit resolves the real user credential.
// shared token
audit → bot_service_account

// scalekit
audit → user_abc ✓
02.
Authentication is not authorization
03.
Multi-tenancy is architectural
04.
One connector today. Ten tomorrow.
“Our agents act across Salesforce, Gong, Google Drive, and more, on behalf of every customer. Scalekit behind the scenes meant we can keep adding tools without ever rebuilding how credentials or tool calling work.”
Venu Madhav Kattagoni
Head of Engineering / Von
FAQs
Frequently Asked Questions

Does the agent access Brevo as the user or as a shared key?
As the user. Each workspace member authorizes once and Scalekit resolves their credential at request time. Audit logs attribute every action to that user, not a shared service account.

Where is the Brevo OAuth token stored?
In Scalekit's managed AES-256 token vault, namespaced per tenant. Refresh is automatic. Revocation is a single dashboard action. Tokens never appear in prompts, logs, or LLM context.

Can I limit what the agent is allowed to do in Brevo?
Yes. Pass a tool name filter to listScopedTools so the marketing agent only sees the subset you authorize. Pre-API-call scope checks block out-of-policy actions before the request reaches Brevo.

What happens when a user revokes Brevo access?
The connection is invalidated on the next tool call. Subsequent requests for that user fail closed with a clear error. Other users in the tenant remain unaffected. The event is logged for audit.

Can the agent send campaigns or manage sub-accounts?
Only with the authorizing user's Brevo role. Campaign sends, contact changes, and corporate sub-account tools follow that user's permissions, and send tools can be filtered out for analytics-only agents.

Start in your coding agent
Up and running in one command
Install the Scalekit skill in your editor of choice. Connector, auth, tools, prompt, all wired up
Claude Code REPL
/plugin marketplace add scalekit-inc/claude-code-authstack
/plugin install agentkit@scalekit-auth-stack
Cursor Code REPL
# ~/.cursor/mcp.json
{
""mcpServers"": {
""brevomcp"": {
""url"": ""https://mcp.scalekit.com/brevomcp"",
""headers"": { ""Authorization"": ""Bearer $SCALEKIT_TOKEN"" }
}
}
}
Codex Code REPL
# ~/.codex/config.toml
[mcp_servers.brevomcp]
url = ""https://mcp.scalekit.com/brevomcp""
auth_env = ""SCALEKIT_TOKEN""
Copilot Code REPL
# .vscode/mcp.json
{
""servers"": {
""brevomcp"": {
""url"": ""https://mcp.scalekit.com/brevomcp"",
""type"": ""http""
}
}
}