List an agent's MCP servers

View as Markdown
Returns the MCP servers assigned to the agent, i.e. the external tool sources the agent can call. Credentials and per-tool decisions are never included; use `GET /api/mcp-servers/{mcpServerId}` for a server's `toolOverrides`. Not paginated: at most 50 servers are returned, in no guaranteed order. The list includes the platform's own gateway row for the agent (it may carry a non-null `agent_id`) and hosted providers attached automatically; it excludes the connected-apps tool surface managed under Integrations. An agent id that does not exist in the workspace returns an empty list, not 404. **Consistency.** Cached for up to 2 minutes; assigning or removing a server clears the cache before responding. **Idempotency.** Read-only and safe to retry. **Access** - **Required scope:** `read` (or `write`). Any workspace role. - **Rate limit:** General API — 120 (Starter), 200 (Growth), 300 (Business) or 600 (Enterprise) requests/min per workspace. See [Rate limits](/rate-limits). - **Plan:** Available on every plan.

Authentication

AuthorizationBearer
Workspace API key: `jl_` followed by 64 lowercase hex characters, created by the workspace owner in the dashboard (**Settings → API Keys**) and sent as `Authorization: Bearer jl_...`. The plaintext is shown once, at creation; Jelliu stores only a SHA-256 hash. A workspace can hold up to 25 active keys. | Scope | GET / HEAD | POST / PUT / PATCH / DELETE | Admin-only routes | | --- | --- | --- | --- | | `read` | Yes | No | No | | `write` | Yes | Yes | No | | `full` | Yes | Yes | Yes | Operations restricted to admins or owners reject keys without the `full` scope with `403`, and say so in their description. No key, whatever its scope, can mint or revoke API keys or rotate a webhook secret — that requires a signed-in owner session. A revoked key stops authenticating within about 10 seconds. See [Authentication](/authentication).

Path parameters

agentIdstringRequiredformat: "uuid"

UUID of the agent. It must belong to the authenticated workspace; an id from another workspace answers 404, exactly like an unknown one. Returned as id by GET /api/agents.

Response

The servers assigned to the agent.
datalist of objects

Errors

400
Bad Request Error
401
Unauthorized Error
403
Forbidden Error
429
Too Many Requests Error