Skip to main content
Glama

AIsa Agent Mail

Reply To Message

post_agentmail_inbox_message_reply
Destructive

Replies to one message, threading the response correctly, and returns message_id and thread_id. 🔴 This sends real email and it cannot be recalled. It answers the sender only — post_agentmail_inbox_message_reply_all answers every recipient, which is a materially different blast radius, so pick deliberately. Every AIsa caller shares one AgentMail account, so this reaches inboxes other callers created. To send to a fresh set of recipients use post_agentmail_inbox_message_send.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
ccNoCC recipient address or addresses.
toNoRecipient address or addresses.
bccNoBCC recipient address or addresses.
htmlNoHTML body of message.
textNoPlain text body of message.
labelsNoLabels of message.
headersNoHeaders to include in message.
inbox_idYesThe ID of the inbox.
reply_toNoReply-to address or addresses.
reply_allNoReply to all recipients of the original message.
message_idYesID of message.
attachmentsNoAttachments to include in message.
AuthorizationYesBearer authentication

Output Schema

TableJSON Schema
NameRequiredDescriptionDefault

No arguments

Schema Changelog

Changes observed during successful MCP inspections.

  1. First observed

TDQS

A4.4/5.0
Behavior5/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

Beyond destructiveHint=true, the description makes the irreversible action concrete: 'sends real email and it cannot be recalled' and warns of cross-caller side effects from the shared AgentMail account. This adds operational context that annotations cannot express.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness5/5

Is the description appropriately sized, front-loaded, and free of redundancy?

Every sentence earns its place: purpose, irreversible side effect, sender-only scope, shared-account consequence, and the send alternative. The most important operational warning is front-loaded before routing guidance.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness4/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

For a 13-parameter reply tool with an output schema and annotations, the description covers the non-obvious selection and side-effect context well. It is not perfect because the `reply_all` schema parameter remains unaddressed, which is a completeness gap an agent could stumble on.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters2/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

Schema description coverage is 100%, so the baseline is 3, but the description conflicts with the schema's `reply_all` property: the text says this tool answers only the sender while the schema exposes `reply_all` with 'Reply to all recipients.' It also never clarifies whether `to`/`cc`/`bcc` should be supplied for a reply, which weakens parameter understanding for a 13-parameter tool.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose5/5

Does the description clearly state what the tool does and how it differs from similar tools?

The phrase 'Replies to one message, threading the response correctly, and returns `message_id` and `thread_id`' gives a precise verb, object, and result. It also explicitly names the differentiating sibling for reply-all and send, so an agent can distinguish this tool without guessing.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines5/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

It explicitly says this answers the sender only, points to `post_agentmail_inbox_message_reply_all` for every recipient, and recommends `post_agentmail_inbox_message_send` for a fresh recipient set. It even frames reply-all as a 'materially different blast radius,' which is actionable selection guidance.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.

Resources