Skip to main content

Hook up a tool once. Say goodbye to API key hell.

Connect an account once. Every terminal and every assistant reaches it under one permission, and changing what a tool may do reaches all of them at their next call.

One card, every client

Gmail

Calendar

Levels stack: Read, then Draft, then Manage, then Full. Off is a rung like any other. A capability the account never granted gets no ladder, only a link to grant it.

Change it in one place

A permission is a named policy, not a copy of a key. Any number of clients hook up to the same one. Moving Gmail from Read to Manage reaches every client on that permission at its next call, with nothing to restart and nothing to sign in to again.

The same holds in the other direction. Switching a client off stops its calls at once, and revoking it keeps the history as a record.

Two doors, one plane

The permission, the ceiling and the record are the same objects either way. The only thing that changes is what does the asking.

What it reaches

This is gbrain Tools: one toolbox, reached from a terminal or over MCP, under one permission.