Mailbuttons MCP Server
OfficialMailbuttons MCP server
Governed email for AI agents, over the Model Context Protocol. Give an agent a scoped mailbox where the server enforces the guardrails, not the prompt: sandbox-by-default inboxes, a policy gate on every send, and a tamper-evident audit log. External sending and scope changes are human-approved, never granted by the agent itself.
Registry:
com.mailbuttons/mcp-serverPlatform: mailbuttons.com · agent front door: mbag.ai
Use it
Hosted (recommended) — a streamable-HTTP endpoint served by the platform:
https://mailbuttons.com/api/v1/mcp/rpc
Authorization: Bearer <your Mailbuttons MCP token> # mb_sandbox_... (or mb_prod_...)Local (stdio) — run the npm package and let your agent launch it:
{
"mcpServers": {
"mailbuttons": {
"command": "npx",
"args": ["-y", "@mailbuttons/mcp-server"],
"env": { "MAILBUTTONS_API_KEY": "mb_sandbox_..." }
}
}
}Get a scoped token from the dashboard or POST /api/v1/mcp/sandbox-inboxes.
Sandbox tokens can never send externally until a human promotes them.
Related MCP server: AgentCloak
What the server enforces
Inbound — a per-mailbox sender policy, fail-closed: mail from strangers bounces by default, so nobody can prompt-inject your agent just by emailing it.
Outbound — a recipient blocklist the agent can read but not change; a blocked send returns a normal
{"status":"blocked"}result, not an error.Caps + audit — per-account send caps and a hash-chained audit log that records refusals too.
Escalation — sending externally or widening scope is propose-only; a named human approves. The agent cannot approve its own request.
Install as an agent skill
This repo ships a root SKILL.md, so any skills-aware agent can add it:
npx skills add mailbuttons/mcp-serverDocs
Agent signup (for agents): https://mbag.ai/docs/agent-signup.md
Trust model: https://mbag.ai/docs/trust-model.md
OpenAPI: https://mbag.ai/api/openapi.json
Framework recipes:
references/(Claude Agent SDK, LangChain, plain SDK)
Mailbuttons is a trading name of Code Cutter Limited (UK, no. 08453060). MIT licensed.
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- Alicense-qualityCmaintenanceEnables AI agents to interact with Microsoft 365 Outlook Mail, allowing email operations via natural language.Last updated6MIT
- Flicense-qualityCmaintenanceA proxy service that sits between AI agents and email, providing safe access with read-only design, PII redaction, blocklists, and sanitization.Last updated6
- Alicense-qualityCmaintenanceEnables AI assistants to manage multiple email accounts with secure credentials, local full-text search, thread-aware replies, and automation.Last updated4MIT
- Alicense-qualityCmaintenanceEnables AI agents to read, triage, respond to, and calendar-manage Gmail with a production-grade MCP control plane and human-in-the-loop safety.Last updated2MIT
Related MCP Connectors
Authenticated email gateway for AI agents — per-agent inboxes, HITL approval, SPF/DKIM verified.
Authenticated email gateway for AI agents — per-agent inboxes, HITL approval, SPF/DKIM verified.
Email for AI agents — send, receive as a webhook, manage domains, templates, routing.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/mailbuttons/mcp-server'
If you have feedback or need assistance with the MCP directory API, please join our Discord server