Paperclip’s Netlify MCP connector gives your AI agents tools to inspect projects and deploys and start deployments. Each tool can be Allowed, Ask first or Off.
Agents reach the authorizing account’s teams and sites under Netlify role permissions. Paperclip adds no team or site filter.
What agents can do with Netlify
- Inspect a project and its deploys
netlify-project-services-reader·netlify-deploy-services-reader - Review before deploying
netlify-deploy-services-reader·netlify-deploy-services-updater - Inspect team and project context
netlify-team-services-reader·netlify-project-services-reader
How to connect Netlify
- In Paperclip, open Connectors and select Netlify.
- On the Access step, choose the identity and which agents may use the connection.
- Select Sign in with Netlify and complete browser sign-in.
Netlify tools for agents8
Read 5
netlify-deploy-services-readerSelect and run one of the following Netlify read operations (read-only) get-deploy, get-deploy-for-site
netlify-extension-services-readerSelect and run one of the following Netlify read operations (read-only) get-extensions, get-full-extension-details
netlify-project-services-readerSelect and run one of the following Netlify read operations (read-only) get-project, get-projects, get-forms-for-project
netlify-team-services-readerSelect and run one of the following Netlify read operations (read-only) get-teams, get-team, get-team-env-vars
netlify-user-services-readerSelect and run one of the following Netlify read operations (read-only) get-user
Write 3
netlify-deploy-services-updaterSelect and run one of the following Netlify write operations deploy-site
netlify-extension-services-updaterSelect and run one of the following Netlify write operations change-extension-installation, initialize-database
netlify-project-services-updaterSelect and run one of the following Netlify write operations update-visitor-access-controls, update-forms, manage-form-submissions, update-project-name, manage-env-vars, create-new-project
Tool availability and permissions
This list describes the reviewed tools. Your selected method, provider access and action permissions determine what agents can use.
These lists use a conservative permission policy. Read requires a provider read-only hint or a reviewed Paperclip read rule. Evidence that an action changes data or submits information elsewhere puts it in Write. Write also includes actions we cannot verify as read-only. Read describes the reviewed evidence; it does not guarantee that an action has no side effects. A connected account can group actions differently.
This list covers the default remote tools, each of which groups several operations. Individual domain operations are parameters of those tools, rather than separate tools.
Connection policies
Discovered actions follow the connection’s policies. Review their permissions and set actions to Ask first or Off as needed. Keep deployment, configuration and environment-variable writes on Ask first or Off because they can change or break a live site.
Netlify connector FAQ
Can I require approval for actions?
Set an action to Ask first to require human approval of each call or Off to prevent calls. Allowed actions run without approval. Read and Write grouping is separate from these settings.
What can agents reach in Netlify?
Agents reach the authorizing account’s teams and sites under Netlify role permissions. Paperclip adds no team or site filter.
What do I need before connecting?
Use a Netlify account with access to the intended teams and sites. Paperclip registers its client automatically.