Connect
once.
Every AI agent gets
exactly the right tools.
Connect work and personal accounts once. Claude, Claude Code, Codex, Cursor, Hermes, and any MCP client reuse them through one URL — each with its own rules. No re-auth. No over-sharing.
Cursor is banned at work, Claude Code isn’t — my Linear token can’t tell the difference.
Per tool. Per account. Per agent.
Not one big OAuth grant. Claude Code gets both Linears. Cursor gets the personal one — the work one isn’t even in its tool list. Every cell is a rule you set once: each agent gets its own view of your tools, and what’s hidden simply isn’t there.
Claude connects one Google Calendar. I have two. It double-booked me within a week.
Add the second account. And the third.
One connection, any number of accounts inside it. Each account keeps its own rules per agent — Claude finally sees both calendars, and the work one still plays by work rules. To an agent, they’re just two separate calendars.
Our billing system has never heard of MCP. The vendor’s roadmap says 2027.
One permission layer.
Three ways in.
No MCP required on the other side. The catalog wraps plain APIs — OAuth, API keys, OpenAPI specs — and anything that already speaks MCP drops in by URL. Out comes MCP with OAuth DCR, the way Claude connects natively, or a key-protected OpenAPI for the agent you wrote yourself.
Test in AIP Chat
Talk to your connected tools right in the dashboard. Approve or reject risky calls inline before wiring anything up.
dash.aipx.run/chat
A scoped MCP endpoint
One URL per agent. Claude, Claude Code, Codex, Cursor — anything that speaks MCP gets only the tools you flipped on.
https://dash.aipx.run/mcp/:agent
A key-protected API
A generated OpenAPI document plus an agent key. Call approved tools from Hermes or any backend, no MCP required.
GET /api/agents/:agent/openapi
Gmail says I emailed my boss at 2am. I was asleep. One of my agents wasn’t.
Ask the log, not the agents.
Agent, tool, account, inputs, result, timestamp — every call your agents make, on the record. When something looks off, you don’t interrogate five chat histories. You look up the row and know exactly which agent to ground.
Hermes send_message Work success { "to": "boss@company.com", "subject": "my honest feedback" } { "id": "msg_18f4c2", "labelIds": ["SENT"] } Three steps. Then you never think about it again.
Connect accounts
OAuth into Linear, Sentry, Notion, PostHog — or paste any MCP URL. Work, personal, side project: as many accounts per integration as you live in.
Scope every agent
The same connections, reused by every agent — but each one sees only what you flip on. Change your mind? Flip it back. Nothing re-authenticates.
Paste one URL
Each agent is a scoped MCP endpoint or a key-protected OpenAPI. Drop it into Claude, Claude Code, Codex, Hermes — or your own backend.
Simple. Counted in accounts,
not in seats.
Tool calls and audit are unlimited on every plan. Upgrade when you need more agents, accounts, or integrations that work without authorization.
- Up to 3 connected accounts
- 1 agent, unlimited tool calls
- Granular permissions and audit log
Taxes included — we cover them.
- Unlimited connected accounts and agents
- Pro integrations
- Cancel anytime
Stop re-connecting
the same five tools.
Connect them once, scope your agents, and get back to work. Start free with 3 connected accounts.