MCP server for ReplyLayer — safe email for AI agents
Abgeleitet aus den Transporten, die dieser Eintrag deklariert (stdio, streamable-http). Ein Client, der hier nicht steht, ist damit nicht ausgeschlossen — Forge kann ihn nur nicht bestätigen.
REPLYLAYER_API_KEYAPI-SchlüsseloptionalReplyLayer API key. Optional if you ran `npx -y replylayer-mcp init`, which stores it locally.
Vom Autor in der offiziellen MCP-Registry angegeben. Forge does not store, broker, or ever see these values — the config below is scaffolded with placeholders you fill in locally.
Die Verifizierung bestätigt die Identität des Publishers (die Inhaberschaft am Repo), nicht die Sicherheit des Codes. Der Sicherheits-Scan deckt bekannte CVEs und verdächtige Installationsskripte ab.
Aus dem Quellcode gelesen, den npm tatsächlich ausliefert, zum Zeitpunkt des Scans. Das Paket wurde nie ausgeführt. Tools, die zur Laufzeit dynamisch registriert werden oder in gebündeltem beziehungsweise minifiziertem Code stecken, können übersehen werden — das hier ist also eine Untergrenze der Tool-Oberfläche, keine vollständige Erhebung.
add_inbound_allowlist_bulkBulk-add up to 1000 sender email addresses or @domain patterns to the inbound allowlist for a mailbox in a single call. Useful for onboarding/migration when importing an existing trusted-senders list. Returns a partial-success response: added[], already_existed[], invalid[] (with per-email reason),…Bulk-add up to 1000 sender email addresses or @domain patterns to the inbound allowlist for a mailbox in a single call. Useful for onboarding/migration when importing an existing trusted-senders list. Returns a partial-success response: added[], already_existed[], invalid[] (with per-email reason),…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
add_inbound_allowlist_entryAdd a sender (email or @domain) to the inbound allowlist for a mailbox. When the mailbox is in `allowlist` mode, only senders matching an entry on this list will be delivered; everyone else lands in state="firewall_blocked". Accepts an exact email or @domain pattern. Idempotent — repeat adds return…Add a sender (email or @domain) to the inbound allowlist for a mailbox. When the mailbox is in `allowlist` mode, only senders matching an entry on this list will be delivered; everyone else lands in state="firewall_blocked". Accepts an exact email or @domain pattern. Idempotent — repeat adds return…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
add_inbound_blocklist_bulkBulk-add up to 1000 sender email addresses or @domain patterns to the account-wide inbound blocklist in a single call. Useful for onboarding/migration when importing an existing spam/blocked-sender list. Returns a partial-success response: added[], already_existed[], invalid[] (with per-email reaso…Bulk-add up to 1000 sender email addresses or @domain patterns to the account-wide inbound blocklist in a single call. Useful for onboarding/migration when importing an existing spam/blocked-sender list. Returns a partial-success response: added[], already_existed[], invalid[] (with per-email reaso…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
add_inbound_blocklistAdd an email or domain pattern to the inbound (incoming) blocklist. Mirrors `add_suppression` for the inbound side: customer-protective do-not-receive list. Accepts an exact email (alice@spam.com) or @domain (@spam.com). Server forces reason="manual" + source="customer". Idempotent — repeat adds re…Add an email or domain pattern to the inbound (incoming) blocklist. Mirrors `add_suppression` for the inbound side: customer-protective do-not-receive list. Accepts an exact email (alice@spam.com) or @domain (@spam.com). Server forces reason="manual" + source="customer". Idempotent — repeat adds re…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
add_recipientAdd a person to the account's recipient list so you can email them. Only for accounts on the free Sandbox; other accounts don't use this list and get an error here.Add a person to the account's recipient list so you can email them. Only for accounts on the free Sandbox; other accounts don't use this list and get an error here.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
add_suppressionKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
add_suppressions_bulkBulk-add up to 1000 email addresses or @domain patterns to the do-not-contact list in a single call. Useful for onboarding/migration when importing an existing suppression/unsubscribe list. Returns a partial-success response: added[], already_existed[], invalid[] (with per-email reason), and a coun…Bulk-add up to 1000 email addresses or @domain patterns to the do-not-contact list in a single call. Useful for onboarding/migration when importing an existing suppression/unsubscribe list. Returns a partial-success response: added[], already_existed[], invalid[] (with per-email reason), and a coun…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
approve_reviewApprove a state="pending_review" message and dispatch it. Wire status reports the dispatch outcome ("sent" or "blocked" — release-style); audit_log + message.review.approved webhook fire regardless of dispatch outcome. Auth: admin API keys + session only — agent keys 403. Optional reason text (max…Approve a state="pending_review" message and dispatch it. Wire status reports the dispatch outcome ("sent" or "blocked" — release-style); audit_log + message.review.approved webhook fire regardless of dispatch outcome. Auth: admin API keys + session only — agent keys 403. Optional reason text (max…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
block_quarantined_messageBlock a state="quarantined" INBOUND message (→ terminal blocked, no delivery). INBOUND-ONLY: the tool pre-fetches the message and refuses an outbound row (manage outbound quarantines from the dashboard). Optional reason is persisted to the audit log. Mailbox-bound agent keys can only block messages…Block a state="quarantined" INBOUND message (→ terminal blocked, no delivery). INBOUND-ONLY: the tool pre-fetches the message and refuses an outbound row (manage outbound quarantines from the dashboard). Optional reason is persisted to the audit log. Mailbox-bound agent keys can only block messages…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
create_draftKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
delete_draftprivilegiertSoft-delete a draft (sets state="deleted"; hides it from list_drafts). The row remains in the database and the raw MIME body persists in storage for operator recovery. If the draft was scheduled for future dispatch, the schedule is cancelled and a message.schedule_cancelled webhook fires. This dele…Soft-delete a draft (sets state="deleted"; hides it from list_drafts). The row remains in the database and the raw MIME body persists in storage for operator recovery. If the draft was scheduled for future dispatch, the schedule is cancelled and a message.schedule_cancelled webhook fires. This dele…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
delete_messageprivilegiertPermanently delete a message: soft-deletes the row and purges its raw MIME and attachment derivatives from object storage. Works on any direction (inbound or outbound) in a deletable state; draft, scheduled, and dispatching rows are refused with a conflict. Idempotent (re-deleting returns success).…Permanently delete a message: soft-deletes the row and purges its raw MIME and attachment derivatives from object storage. Works on any direction (inbound or outbound) in a deletable state; draft, scheduled, and dispatching rows are refused with a conflict. Idempotent (re-deleting returns success).…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
deny_reviewDeny a state="pending_review" message; terminal block (no dispatch). Audit_log + message.review.denied webhook fire on commit. Auth: admin API keys + session only — agent keys 403. Optional reason text (max 500 chars) is persisted to messages.review_reason and included in the audit/webhook payloads.Deny a state="pending_review" message; terminal block (no dispatch). Audit_log + message.review.denied webhook fire on commit. Auth: admin API keys + session only — agent keys 403. Optional reason text (max 500 chars) is persisted to messages.review_reason and included in the audit/webhook payloads.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
get_account_usageGet account usage, limits, storage quota state, and storage byte breakdown.Get account usage, limits, storage quota state, and storage byte breakdown.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
get_agent_quotaGet the current send-budget quota (sends today, effective daily limit, remaining, reset time, bound mailbox IDs). Works with agent-scoped keys. Includes a warmup object while a new paid account ramps on the shared domain.Get the current send-budget quota (sends today, effective daily limit, remaining, reset time, bound mailbox IDs). Works with agent-scoped keys. Includes a warmup object while a new paid account ramps on the shared domain.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
get_attachment_previewGet a derived text preview of an inbound message attachment. Returns extracted text for plain-text, CSV, PDF, and Office (DOCX/PPTX/XLSX) attachments on mailboxes with attachment_exposure_mode="derived_content". Content is hard-capped at 20 000 characters; check preview.truncated and preview.char_c…Get a derived text preview of an inbound message attachment. Returns extracted text for plain-text, CSV, PDF, and Office (DOCX/PPTX/XLSX) attachments on mailboxes with attachment_exposure_mode="derived_content". Content is hard-capped at 20 000 characters; check preview.truncated and preview.char_c…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
get_draftRead a specific draft by ID. Returns the full draft including body, scan results, scheduled-send fields, and sub-address fields if set.Read a specific draft by ID. Returns the full draft including body, scan results, scheduled-send fields, and sub-address fields if set.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
get_link_scanning_statusGet malicious link scanning (URL reputation) activation statusGet malicious link scanning (URL reputation) activation status
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
get_threadRead a full email thread as one ordered conversation (every message in the thread, oldest → newest, safe-view only). Pass the thread_id from list_threads or a message's thread_id. A thread key can resolve in more than one mailbox — a `NOT_FOUND` error means the thread is either absent or the key is…Read a full email thread as one ordered conversation (every message in the thread, oldest → newest, safe-view only). Pass the thread_id from list_threads or a message's thread_id. A thread key can resolve in more than one mailbox — a `NOT_FOUND` error means the thread is either absent or the key is…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_allowlist_blocked_attemptsKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
list_allowlistKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
list_draftsList drafts in a ReplyLayer mailbox. Drafts are scan-then-review-then-send entries; use create_draft to make one and send_draft to dispatch it.List drafts in a ReplyLayer mailbox. Drafts are scan-then-review-then-send entries; use create_draft to make one and send_draft to dispatch it.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_inbound_allowlistList per-mailbox inbound allowlist entries (senders permitted in `allowlist` mode). Mirrors `list_allowlist` for the inbound side. Read-only. Returns up to `limit` rows (default 100, max 500); pass `cursor` to paginate.List per-mailbox inbound allowlist entries (senders permitted in `allowlist` mode). Mirrors `list_allowlist` for the inbound side. Read-only. Returns up to `limit` rows (default 100, max 500); pass `cursor` to paginate.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_inbound_blocklistList account-wide inbound sender blocklist entries (the do-not-receive list). Mirrors `list_suppressions` for the inbound side. Returns up to `limit` rows (default 100, max 500); pass `cursor` to paginate. Read-only.List account-wide inbound sender blocklist entries (the do-not-receive list). Mirrors `list_suppressions` for the inbound side. Returns up to `limit` rows (default 100, max 500); pass `cursor` to paginate. Read-only.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_inbound_firewall_blocked_attemptsList incoming senders rejected by the inbound firewall for a mailbox. Default aggregated view groups by (sender, matched_field, mode, reason_code) ordered by most recent. Pass aggregate=false for raw per-attempt history with tuple-cursor pagination. within_days filters by recency (1..365). Read-onl…List incoming senders rejected by the inbound firewall for a mailbox. Default aggregated view groups by (sender, matched_field, mode, reason_code) ordered by most recent. Pass aggregate=false for raw per-attempt history with tuple-cursor pagination. within_days filters by recency (1..365). Read-onl…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_mailboxesList all mailboxes on the account. Returns name, full address, status, and the recipient-visible From identity (effective_from_display) for each mailbox.List all mailboxes on the account. Returns name, full address, status, and the recipient-visible From identity (effective_from_display) for each mailbox.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_messagesList / search messages in a ReplyLayer mailbox. Filter by keyword search, sender, date range, direction, and status — including the held-mail states for triage: status="quarantined" or status="pending_review" (then release_quarantined_message / approve_review). Page older by passing before=<id of t…List / search messages in a ReplyLayer mailbox. Filter by keyword search, sender, date range, direction, and status — including the held-mail states for triage: status="quarantined" or status="pending_review" (then release_quarantined_message / approve_review). Page older by passing before=<id of t…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_recipientsList recipients with confirmation status. Sandbox-tier accounts can only send to confirmed recipients.List recipients with confirmation status. Sandbox-tier accounts can only send to confirmed recipients.
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_suppressionsList addresses on the do-not-contact list (suppressions). Includes both system-added entries (hard bounces, spam complaints, RFC 8058 unsubscribes) and customer-added entries (reason="manual", source="customer"). Useful for verifying that an address is or is not blocked before attempting to send. E…List addresses on the do-not-contact list (suppressions). Includes both system-added entries (hard bounces, spam complaints, RFC 8058 unsubscribes) and customer-added entries (reason="manual", source="customer"). Useful for verifying that an address is or is not blocked before attempting to send. E…
Für dieses Tool wurde kein Eingabeschema veröffentlicht.
list_threadsKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
mark_message_readKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
mark_thread_readKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
read_messageKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
release_firewall_blocked_messageKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
release_quarantined_messageKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
remove_suppressionprivilegiertKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
reply_to_messageKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
report_and_blockKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
send_draftKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
send_emailKeine Beschreibung veröffentlichtDieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.
25 von 40 Tools haben eine Beschreibung veröffentlicht.
Tool-Namen und -Beschreibungen stammen vom Publisher und werden wortgetreu als inerter Text angezeigt. Es sind die Zeichenketten, die ein MCP-Client an ein Modell übergibt, deshalb prüft Forge sie auf Prompt-Injection-Muster — jeder Befund erscheint oben beim Sicherheits-Scan. „Privilegiert“ ist ein Schlagwort-Treffer im Tool-Namen, keine Prüfung dessen, was das Tool tut: ein harmlos klingender Name kann trotzdem alles tun.
MCP server for ReplyLayer — safe email for AI agents
Verlinkte Namen öffnen den Forge-Index aller Einträge, bei denen dieses Tool beobachtet wurde. Alle indexierten Tools durchsuchen.
Nicht verfolgt: peerDependencies. Dieser Baum erfasst nur Laufzeitabhängigkeiten; was jene mitbringen, wurde nie aufgelöst.