Tool approvals for a local CLI
A one-tool MCP server (`approve`) that a local CLI provider asks before it runs a tool, so the person in the Udon conversation can allow or deny the call. Udon gives the CLI a run ticket in the `ticket` query parameter; without a live ticket every call is denied. It authenticates like `/api/mcp` and is not meant for external MCP clients.
The Udon MCP access token, generated in Settings → Assistant. Sent as Authorization: Bearer <token> by external MCP clients.
In: header
Query Parameters
The run ticket Udon issued for one assistant turn.
Request Body
application/json
TypeScript Definitions
Use the request body type in TypeScript.
Response Body
application/json
curl -X POST "https://example.com/api/mcp/approval" \ -H "Content-Type: application/json" \ -d '{ "method": "string" }'The tool catalogue and MCP exposure GET
Every tool the assistant can call, with the group and tier the settings page renders, and whether an MCP client may currently reach it. Admin only.
End an MCP session DELETE
Ends the MCP session named by the `Mcp-Session-Id` header, so a long-lived client can let go of its id instead of waiting for the idle sweep.