Retool MCP Server
for AI Agents
Connect your AI agent to StackOne's Retool MCP server and give it 44 MCP tools out of the box. Auth, tool execution, and security all managed.
Coverage
44 Agent Actions
Create, read, update, and delete across Retool — and extend your agent's capabilities with custom actions.
Authentication
Agent Tool Authentication
Per-user OAuth in one call. Your Retool MCP server gets session-scoped tokens with zero credentials stored on your infra.
Agent Auth →Security
Agent Protection
Every Retool tool response scanned for prompt injection in milliseconds — 88.7% accuracy, all running on CPU.
Prompt Injection Defense →Performance
Max Agent Context. Min Cost.
Free up to 96% of your agent's context window to enhance reasoning and reduce cost, on every Retool call.
Tools Discovery →What is the Retool MCP Server?
A Retool MCP server lets AI agents read and write Retool data through the Model Context Protocol — Anthropic's open standard for connecting LLMs to external tools. StackOne's Retool MCP server ships with 44 pre-built actions, fully extensible via the Connector Builder — plus managed authentication, prompt injection defense, observability, and agent execution runtime. Connect it from MCP clients like Claude Desktop, Claude Code, Cursor, Goose, and VS Code, or from agent frameworks like OpenAI Agents SDK, LangChain, and Vercel AI SDK.
All Retool MCP Tools
Every action from Retool's API, ready for your agent. Create, read, update, and delete — scoped to exactly what you need.
Custom Component Librarys
- Create Custom Component Library
Create a new custom component library
- Get Custom Component Library
Get a custom component library by ID
Folders
- Create Folder
Create a new folder
- List Folders
Get all folders in the organization
- Get Folder
Get a folder by ID
- Update Folder
Update a folder by ID
- Delete Folder
Delete a folder by ID
Groups
- Create Group
Create a new permission group
- List Groups
Get all permission groups
- Get Group
Get a group by ID
- Update Group
Update a group using JSON Patch
- Delete Group
Delete a permission group
Resources
- List Resources
Get all resources in the organization
- Delete Resource
Delete a resource by ID
Roles
- Create Role
Create a new role
- List Roles
Get all roles in the organization
- Update Role
Update a role by ID
- Delete Role
Delete a role by ID
Spaces
- Create Space
Create a new child space
- List Spaces
Get all child spaces
- Get Space
Get a space by ID
- Update Space
Update a space by ID
- Delete Space
Delete a space by ID
User Invites
- Create User Invite
Create a new user invite
- List User Invites
Get all user invites in the organization
- Get User Invite
Get a user invite by ID
- Delete User Invite
Delete a user invite by ID
Users
- Create User
Create a new user in the organization
- List Users
Get all users in the organization
- Get User
Get a specific user by ID
- Update User
Update a user by ID
- Delete User
Disable a user from the organization
Workflows
- List Workflows
Get all workflows in the organization
- Get Workflow
Get a workflow by ID
Other (10)
- Add Users To Group
Add users to a permission group
- Copy Elements To Another Space
Copy apps, queries, resources, and workflows to another space
- Add Or Update User Attribute
Add or update a user attribute
- Add User Invites To Group
Add user invites to a group
- List Custom Component Libraries
Get all custom component libraries in the organization
- List Custom Component Library Revisions
Get all revisions of a custom component library
- Get Custom Component Library Revision Files
Get all files for a custom component library revision
- Get Workflow Run
Get details for a workflow run
- Remove User From Group
Remove a user from a permission group
- Remove User Invite From Group
Remove a user invite from a group
Set Up Your Retool MCP Server in Minutes
One endpoint. Any framework. Your agent is talking to Retool in under 10 lines of code.
Agent Frameworks
{
"mcpServers": {
"stackone": {
"command": "npx",
"args": [
"-y",
"mcp-remote@latest",
"https://api.stackone.com/mcp?x-account-id=<account_id>",
"--header",
"Authorization: Basic <YOUR_BASE64_TOKEN>"
]
}
}
}Check More Developer Tools MCP Servers
185+ actions
141+ actions
136+ actions
136+ actions
133+ actions
129+ actions
119+ actions
Retool Resources
The Best MCP Gateways for Retool in 2026
Best MCP gateways for Retool Agents: StackOne, Composio, Zapier, Merge, Workato compared. Retool caps 20 MCP servers per agent; audit logs skip tool calls.
9 min
MCP Code Mode: Keeping Tool Responses Out of Agent Context
Anthropic's code_execution processes data already in context. Custom MCP code mode keeps raw tool responses in a sandbox. 14K tokens vs 500.
11 min
Comparing BM25, TF-IDF, and Hybrid Search for MCP Tool Discovery
Benchmarking BM25, TF-IDF, and hybrid search for MCP tool discovery across 916 tools. The 80/20 TF-IDF/BM25 hybrid hits 21% Top-1 accuracy in under 1ms.
10 min
Indirect Prompt Injection Defense for MCP Tools: A Technical Guide
MCP tools that read emails, CRM records, and tickets are indirect prompt injection vectors. Here's how we built a two-tier defense that scans tool results in ~11ms.
12 min
MCP vs A2A: Architecture, Security, and When to Use Each
MCP vs A2A: what each protocol standardizes, how they differ, their shared security risks including indirect prompt injection, and when to use one, both, or a hybrid architecture.
12 min
MCP vs API: What 200+ Connector Builds Taught Us
MCP wraps APIs, it doesn't replace them. After building 200+ connectors that serve both, here's when each approach wins.
14 min read
Retool MCP Server FAQ
Does StackOne have a Retool MCP server?
Retool MCP server vs direct API integration — what's the difference?
How does Retool authentication work for AI agents?
origin_owner_id.Are Retool MCP tools vulnerable to prompt injection?
What is the context bloat of a Retool agent and how do I avoid it?
Can I limit which actions my Retool agent can access?
Can I create custom agent actions for my Retool MCP server?
When should I NOT use a Retool MCP server?
What AI frameworks and AI clients does the StackOne Retool MCP server support?
Put your AI agents to work
All the tools you need to build and scale AI agent integrations, with best-in-class connectivity, execution, and security.