AppDrag for AI agents
AppDrag is a cloud platform for building websites, APIs, and databases with drag-and-drop tools and code editing, used by developers and small teams to ship apps with built-in hosting. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in AppDrag.
Run a SQL query against a database
Run a visual SQL select query to pull records for a report.
Call a production backend function
Execute a function in the production environment to retrieve or process data.
Confirm before a SQL update or delete
Writing or deleting data with visual SQL should be confirmed before it runs.
11 AppDrag actions, graded by risk.
Every AppDrag action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
0Look things up. Allowed by default.
- No read actions.
write
8Create and change things. Allow, or ask the user first.
- appdrag.visual_sql_selectVisual SQL SELECT
- appdrag.visual_sql_updateVisual SQL Update
- appdrag.execute_function_get_prodExecute PROD API Function (GET)
- appdrag.execute_function_patch_devExecute Dev Function (PATCH)
- appdrag.execute_function_put_defaultExecute Cloud Backend function via PUT (default)
- appdrag.execute_function_put_preprodExecute Cloud Backend function via PUT (preprod)
- appdrag.execute_function_post_defaultExecute Cloud Backend function via POST
- appdrag.execute_function_post_preprodExecute Function POST (Preprod Env)
destructive
3Delete, cancel or archive. Ask first, or deny outright.
- appdrag.visual_sql_deleteVisual SQL Delete
- appdrag.execute_function_delete_defaultExecute Cloud Backend function via DELETE
- appdrag.execute_function_delete_preprodExecute Preprod Function (DELETE)
AppDrag in three steps.
- 01Your users connect AppDragThey add their AppDrag api key on Arc0 Connect, under your brand. It goes straight into the vault.
- 02You set the rulesReads run, writes like “visual SQL SELECT” can wait for the user, and “visual SQL Delete” can be denied outright.
- 03Any agent can actYour agent calls AppDrag through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('appdrag', { read: 'allow', write: 'ask', // visual_sql_select destructive: 'deny', // visual_sql_delete }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How AppDrag connects.
Users add their AppDrag api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
The same AppDrag connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- API key
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use AppDrag from any agent.
AppDrag and Arc0, answered.
Can I use AppDrag with Claude, ChatGPT or Cursor?
Yes. Connect AppDrag to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the AppDrag actions you allow.
How do users connect AppDrag?
Users add their AppDrag api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
Which AppDrag actions can my agent take?
11 in total: 0 read, 8 write and 3 destructive, such as “visual SQL SELECT”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in AppDrag?
Yes. Actions like “visual SQL Delete” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call AppDrag too?
Yes. The same AppDrag connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug AppDrag into your agent.
Your users connect AppDrag once, under your brand. Your agent gets 11 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan