Connect
Optimize
Secure
Announcing StackOne Defender: leading open-source prompt injection guard for your agent • Read More →
Production-ready Envoy MCP server with 42 extensible actions — plus built-in authentication, security, and optimized execution.
Coverage
Create, read, update, and delete across Envoy — and extend your agent's capabilities with custom actions.
Authentication
Per-user OAuth in one call. Your Envoy MCP server gets session-scoped tokens with zero credentials stored on your infra.
Agent Auth →Security
Every Envoy tool response scanned for prompt injection in milliseconds — 88.7% accuracy, all running on CPU.
Prompt Injection Defense →Performance
Free up to 96% of your agent's context window to enhance reasoning and reduce cost, on every Envoy call.
Tools Discovery →A Envoy MCP server lets AI agents read and write Envoy data through the Model Context Protocol — Anthropic's open standard for connecting LLMs to external tools. StackOne's Envoy MCP server ships with 42 pre-built actions, fully extensible via the Connector Builder — plus managed authentication, prompt injection defense, and optimized agent context. Connect it from MCP clients like Claude Desktop, Cursor, and VS Code, or from agent frameworks like OpenAI Agents SDK, LangChain, and Vercel AI SDK.
Every action from Envoy's API, ready for your agent. Create, read, update, and delete — scoped to exactly what you need.
Create a new visitor invitation
List visitor invitations
Get details of a specific invitation
Update an existing visitor invitation
Delete a visitor invitation
Create a new recurring visitor invitation
Get details of a specific recurring invitation
Update an existing recurring visitor invitation
Create a new blocklist entry
Get details of a specific blocklist entry
Update an existing blocklist entry
Delete a blocklist entry
List all employees in the workspace
Get details of a specific employee
List all visitor flows
Get details of a specific visitor flow
List all locations in the workspace
Get details of a specific location
Create a new employee work schedule
List employee work schedules
Get details of a specific work schedule
Delete an employee work schedule
List all spaces such as desks or rooms
Get details of a specific space
Create a new desk
List all desks in the workspace
Get details of a specific desk
Update an existing desk
Delete a desk
Create a new reservation
List all reservations
Get details of a specific reservation
Get company details
List visitor entries (check-ins and check-outs)
Get details of a specific entry
List all blocklist entries
Check in a visitor by converting an invite into an entry
Check in to a work schedule
Check out from a work schedule
Check in to a reservation to start using the space
Check out from a reservation to end usage and free the space
Cancel a pending reservation
One endpoint. Any framework. Your agent is talking to Envoy in under 10 lines of code.
MCP Clients
Agent Frameworks
{
"mcpServers": {
"stackone": {
"command": "npx",
"args": [
"-y",
"mcp-remote@latest",
"https://api.stackone.com/mcp?x-account-id=<account_id>",
"--header",
"Authorization: Basic <YOUR_BASE64_TOKEN>"
]
}
}
}77+ actions
69+ actions
54+ actions
52+ actions
48+ actions
39+ actions
38+ actions
Anthropic's code_execution processes data already in context. Custom MCP code mode keeps raw tool responses in a sandbox. 14K tokens vs 500.
11 min
Benchmarking BM25, TF-IDF, and hybrid search for MCP tool discovery across 916 tools. The 80/20 TF-IDF/BM25 hybrid hits 21% Top-1 accuracy in under 1ms.
10 min
MCP tools that read emails, CRM records, and tickets are indirect prompt injection vectors. Here's how we built a two-tier defense that scans tool results in ~11ms.
12 min
origin_owner_id.All the tools you need to build and scale AI agent integrations, with best-in-class connectivity, execution, and security.