Front MCP

Live

OAUTH 2.1

SHARED INBOX

Communication

Front MCP gives agents authenticated access to your shared inbox over MCP: search accounts and conversations, comment, draft, assign, and manage tags and teammates as the actual user.

  • Per-user credentials: each assignment and draft runs as the actual teammate, never a shared bot.
  • Encrypted per-tenant vault: AES-256, resolved at request time, never in LLM context.
  • Scoped before every call: pre-call scope check, 90-day SIEM-exportable audit chain.
Front MCP
agent · Acme Q3
Run
Assign the newest Acme conversation to me and draft a reply.
S
frontmcp_search_accounts
88ms
Front MCP agent
Found Acme's account and newest conversation, assigned it to you, and drafted a reply pending your review.
Accounts: 1, conversations: 1
frontmcp
1 conversation
18:29
Message Claude...

Tools your support agent reaches for in Front MCP, scoped per user.

CALL ANY TOOL
Work the shared inbox over MCP: search accounts, comment on conversations, create and delete drafts, assign threads, and manage tags, inboxes, and teammates.
frontmcp_list_tags
List tags
List tags in the workspace.
Parameters
Name
Type
Required
Description
all_inboxes
string
Optional
Optional filter by whether the tag applies to all inboxes.
inbox_ids
string
Optional
Optional filter by inbox IDs this tag applies to.
is_visible_in_conversation_lists
string
Optional
Optional filter by visibility in conversation lists.
limit
string
Optional
Maximum number of results (default 50, max 100)
name_query
string
Optional
Optional tag name keywords. Use this only for the tag name itself.
offset
string
Optional
Offset for pagination (default 0). Use with limit to paginate through results.
parent_tag_id
string
Optional
Optional filter by parent tag ID.
frontmcp_search_accounts
Search accounts
frontmcp_list_teams
List teams
frontmcp_search_contacts
Search contacts
frontmcp_list_drafts
List drafts
frontmcp_search_conversations
Search conversations
frontmcp_list_inboxes
List inboxes
frontmcp_get_attachment
Get attachment
frontmcp_list_channels
List channels
frontmcp_get_my_identity
Get my identity
frontmcp_list_statuses
List statuses
frontmcp_add_comment
Add comment
frontmcp_list_teammates
List teammates
frontmcp_create_draft
Create draft
frontmcp_send_message
Send message
frontmcp_update_draft
Update draft
frontmcp_read_account
Read account
frontmcp_update_conversation_status
Update conversation status
frontmcp_read_contact
Read contact
frontmcp_tag_conversation
Tag conversation
frontmcp_read_message
Read message
frontmcp_move_conversation
Move conversation
frontmcp_read_conversation
Read conversation
frontmcp_assign_conversation
Assign conversation
frontmcp_delete_draft
Delete draft
Build your Agent
Same auth pattern across LangChain, OpenAI, Anthropic, and Google ADK.
Python · LlamaIndex
import { ScalekitClient } from "@scalekit-sdk/node";
import { createReactAgent } from "@langchain/langgraph/prebuilt";

const sk = new ScalekitClient(env.SCALEKIT_ENV_URL, env.SCALEKIT_CLIENT_ID, env.SCALEKIT_CLIENT_SECRET);

// Front MCP tools scoped to this user
const { tools } = await sk.tools.listScopedTools("user_123", {
  filter: { connectionNames: ["frontmcp"], toolNames: [
    "frontmcp_list_tags",
    "frontmcp_search_accounts",
    "frontmcp_list_teams"] },
  pageSize: 100,
});

const agent = createReactAgent({ llm, tools });
await agent.invoke({ messages: [{ role: "user", content: "Assign the newest Acme conversation to me and draft a reply." }] });
import OpenAI from "openai";
import { ScalekitClient } from "@scalekit-sdk/node";

const sk = new ScalekitClient(env.SCALEKIT_ENV_URL, env.SCALEKIT_CLIENT_ID, env.SCALEKIT_CLIENT_SECRET);
const openai = new OpenAI();

const { tools } = await sk.tools.listScopedTools("user_123", {
  filter: { connectionNames: ["frontmcp"] }, pageSize: 100,
});

const res = await openai.chat.completions.create({
  model: "gpt-5",
  messages: [{ role: "user", content: "Assign the newest Acme conversation to me and draft a reply." }],
  tools,
});

// Execute the tool call with the user's vaulted Front MCP credential
await sk.tools.executeTool(res.choices[0].message.tool_calls[0], "user_123");
import Anthropic from "@anthropic-ai/sdk";
import { ScalekitClient } from "@scalekit-sdk/node";

const sk = new ScalekitClient(env.SCALEKIT_ENV_URL, env.SCALEKIT_CLIENT_ID, env.SCALEKIT_CLIENT_SECRET);
const anthropic = new Anthropic();

const { tools } = await sk.tools.listScopedTools("user_123", {
  filter: { connectionNames: ["frontmcp"] }, pageSize: 100,
});

const msg = await anthropic.messages.create({
  model: "claude-sonnet-5",
  max_tokens: 1024,
  messages: [{ role: "user", content: "Assign the newest Acme conversation to me and draft a reply." }],
  tools,
});

// Tool call runs with the user's vaulted Front MCP credential
await sk.tools.executeTool(msg.content, "user_123");
import { Agent } from "@google/adk/agents";
import { ScalekitClient } from "@scalekit-sdk/node";

const sk = new ScalekitClient(env.SCALEKIT_ENV_URL, env.SCALEKIT_CLIENT_ID, env.SCALEKIT_CLIENT_SECRET);

const { tools } = await sk.tools.listScopedTools("user_123", {
  filter: { connectionNames: ["frontmcp"] }, pageSize: 100,
});

const agent = new Agent({
  name: "front_agent",
  model: "gemini-2.5-pro",
  instruction: "Manage Front MCP for the signed-in user.",
  tools,
});

await agent.run("Assign the newest Acme conversation to me and draft a reply.");
Try these prompts
Copy any prompt into your agent. Each maps directly to a Front MCP tool. Click to copy, paste into your agent, done.
Work conversations
Copy the prompt
Copied
Assign the newest Acme conversation to me.
Copy the prompt
Copied
Comment on this thread and mention the lead.
Copy the prompt
Copied
Which accounts have open conversations right now?
Drafts
Copy the prompt
Copied
Draft a reply to the billing question.
Copy the prompt
Copied
Delete the stale draft on this thread.
Copy the prompt
Copied
Draft a follow-up for the renewal conversation.
Organize
Copy the prompt
Copied
Tag this conversation as escalation.
Copy the prompt
Copied
List the teams and their inboxes.
Copy the prompt
Copied
Search accounts in the enterprise segment.
SEE HOW AUTH WORKS
Your users connect once. Their Front MCP credentials stay vaulted, every call is scope-checked, and every action is logged.
1
Authorize
Your user connects
Front MCP
once. We tie it to their identity and the meetings they approved — no shared bot account, no org-wide access
Who:
user ‘A’
when:
Once per user
access:
Limited to user
2
Store
Their
Front MCP
token lives in a vault scoped to them. User A's meetings are never reachable by an agent acting for user B, even on the same connection
vault:
encrypted
scope:
per-user
tokens:
auto-refreshed
3
Resolve
When your agent calls a
Front MCP
tool, we fetch the right token server-side. It never touches your agent, never appears in the LLM context, never shows up in your logs
speed:
~40ms
check:
before every call
seen by:
nobody
4
Audit
Every
Front MCP
tool call is logged — who triggered it, which meeting was fetched, what came back. 90 days of history, tied to the user who authorized it
history:
90 days
export:
SIEM-ready
logged:
every call
Test other agents
See the same per-user auth pattern across other communication connectors.
People Ops and HR teams
New Hire Provisioning Agent
Open-source Python template. Creates or detects the hire in Deel, provisions their Workspace account, builds the Notion onboarding page, posts the welcome.
People Ops and HR teams
PTO & Leave Request Agent
Open-source Python template. Resolves the employee in Deel, validates against their real entitlement, submits the request for approval, blocks the calendar.
Engineering Teams
Incident Response Agent
Open-source Python template. Triggers the PagerDuty page, opens the Jira incident, notifies the on-call Slack channel, and drafts the Confluence postmortem.
GTM and RevOps Teams
Competitive intelligence briefing agent
Scans Gong calls for competitor mentions, matches each one to its Notion battlecard, and DMs every affected rep a single Slack digest per cycle. Every call runs as the PMM who owns the briefing, never a shared bot.
Test other agents
See the same per-user auth pattern across other communication connectors.
ENGINEERING
Slack workflow agent (LangGraph)
LangGraph agent that drives multi-step Slack workflows: triggers, approvals, and follow-up actions per user identity.
OPS
Email-to-calendar scheduling agent
Read scheduling intent out of Gmail threads, resolve mutual free time, and create the Google Calendar event.
Why Scalekit
Secure your agent's access. Connectors ship in minutes
01.
Shared inbox keys erase who replied
A shared Front MCP token looks fine in a demo. In production every assignment and draft looks like one integration, and you cannot tell which teammate acted. Scalekit resolves the credential of the actual user who triggered the agent, never a shared bot.
// shared token
audit → bot_service_account

// scalekit
audit → user_abc ✓
02.
Authentication is not authorization
03.
Multi-tenancy is architectural
04.
Front MCP today. Ten connectors tomorrow.
“Our agents act across Salesforce, Gong, Google Drive, and more, on behalf of every customer. Scalekit behind the scenes meant we can keep adding tools without ever rebuilding how credentials or tool calling work.”
Venu Madhav Kattagoni
Head of Engineering / Von
FAQs
Frequently Asked Questions

Does the agent access Front as the user or as a shared key?
As the user. Each workspace member authorizes once and Scalekit resolves their credential at request time. Audit logs attribute every action to that user, not a shared service account.

Where is the Front OAuth token stored?
In Scalekit's managed AES-256 token vault, namespaced per tenant. Refresh is automatic. Revocation is a single dashboard action. Tokens never appear in prompts, logs, or LLM context.

Can I limit what the agent is allowed to do in Front?
Yes. Pass a tool name filter to listScopedTools so the messaging agent only sees the subset you authorize. Pre-API-call scope checks block out-of-policy actions before the request reaches Front.

What happens when a user revokes Front access?
The connection is invalidated on the next tool call. Subsequent requests for that user fail closed with a clear error. Other users in the tenant remain unaffected. The event is logged for audit.

Does the agent respect Front permissions?
Yes. Every call runs as the authorizing user. Native roles, sharing settings, and scope restrictions in Front apply to each request, and actions log to the audit chain.

Start in your coding agent
Up and running in one command
Install the Scalekit skill in your editor of choice. Connector, auth, tools, prompt, all wired up
Claude Code REPL
/plugin marketplace add scalekit-inc/claude-code-authstack
/plugin install agentkit@scalekit-auth-stack
Cursor Code REPL
# ~/.cursor/mcp.json
{
""mcpServers"": {
""frontmcp"": {
""url"": ""https://mcp.scalekit.com/frontmcp"",
""headers"": { ""Authorization"": ""Bearer $SCALEKIT_TOKEN"" }
}
}
}
Codex Code REPL
# ~/.codex/config.toml
[mcp_servers.frontmcp]
url = ""https://mcp.scalekit.com/frontmcp""
auth_env = ""SCALEKIT_TOKEN""
Copilot Code REPL
# .vscode/mcp.json
{
""servers"": {
""frontmcp"": {
""url"": ""https://mcp.scalekit.com/frontmcp"",
""type"": ""http""
}
}
}