All integrations

Gmail

GOOGLE WORKSPACE · EMAIL

Read, search, draft, and send mail as the person the agent acts for.

Acts as the person, not as itself

Each user connects their own account. Every call carries both identities — the agent and the person it is acting for — so the agent can never reach past what that individual can already do.

Credentials never touch the agent

Tokens live in the vault and attach server-side at call time. The agent holds a session, not a secret, and revoking access does not mean rotating a key.

Every call on the record

Who asked, which agent acted, which action ran, and the verdict that let it through — one audit trail across every integration, not one per vendor.

What an agent can do

Each action is granted on its own. An agent allowed to read is not thereby allowed to write, and the scope beside each row is what the acting user must have connected for it to run at all.

gmail_replyWRITE

Reply to an existing Gmail message.

gmail.send
gmail_sendWRITE

Send an email via Gmail.

gmail.send
google_gmail_add_labelWRITE

Add labels to a Gmail message.

gmail.modify
google_gmail_archive_messageWRITE

Archive a Gmail message by removing the INBOX label.

gmail.modify
google_gmail_create_draftWRITE

Create a new Gmail draft.

gmail.compose
google_gmail_delete_draftWRITE

Delete a Gmail draft.

gmail.compose
google_gmail_get_threadREAD

Get a complete Gmail thread with all messages.

gmail.readonly
google_gmail_list_draftsREAD

List Gmail drafts.

gmail.compose
google_gmail_list_messagesREAD

List Gmail messages with full content.

gmail.readonly
google_gmail_list_threadsREAD

List Gmail threads (conversations).

gmail.readonly
google_gmail_mark_readWRITE

Mark a Gmail message as read.

gmail.modify
google_gmail_mark_unreadWRITE

Mark a Gmail message as unread.

gmail.modify
google_gmail_read_messageREAD

Read a specific Gmail message by ID.

gmail.readonly
google_gmail_remove_labelWRITE

Remove labels from a Gmail message.

gmail.modify
google_gmail_send_draftWRITE

Send an existing Gmail draft.

gmail.compose
google_gmail_trash_messageWRITE

Move a Gmail message to trash.

gmail.modify
google_gmail_update_draftWRITE

Update an existing Gmail draft.

gmail.compose

Put Gmail behind one governed endpoint.

Same permissions, same audit trail, whatever else you connect next.