MCP server
The same operations as the API, exposed so that an agent can use them.
The server reads its tools from that same OpenAPI document, so there are never two lists to keep in step. An agent can look up what exists rather than guess at it.
Mark the key as an agent
A key can be marked as belonging to an AI agent. The agent then stands as the sender in the activity rather than the workspace, and a customer who asks who has seen their figures can be given the right answer. The checkbox sits in the same panel as the role and the access, while the key is being created.
Give an agent key read access only, unless the agent is meant to publish and delete. The role cannot be changed afterwards, the key is replaced.