Brex for AI agents
Brex provides corporate credit cards and spend management tools that finance teams use to track transactions, manage budgets, and process employee expenses. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Brex.
Look up card transactions
Read-only pull of a card's recent transactions and expense details before reconciling spend for the month.
Create an expense record
Create an expense entry for a transaction after the user confirms the category and vendor.
Require approval before archiving a budget
Treat archiving a budget or spend limit as needing confirmation since it affects what employees can spend.
84 Brex actions, graded by risk.
Every Brex action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
47Look things up. Allowed by default.
- brex.list_cardsList Cards
- brex.list_tripsList Trips
- brex.list_usersList Users
- brex.get_expenseGet Expense
- brex.list_titlesList Job Titles
- brex.get_referralGet Referral By ID
- brex.list_budgetsList Budgets
- brex.list_vendorsList Vendors
- brex.list_expensesList Expenses
- brex.get_user_limitGet User Limit
- brex.list_locationsList Locations
- brex.list_referralsList Referrals
- brex.list_transfersList Transfers
- brex.get_card_numberGet Card Number
- brex.get_field_by_idGet Field By ID
- brex.get_title_by_idGet Title by ID
write
32Create and change things. Allow, or ask the user first.
- brex.create_cardCreate Card
- brex.create_userCreate User
- brex.update_userUpdate User
- brex.create_fieldCreate Custom Field
- brex.create_titleCreate Job Title
- brex.update_fieldUpdate Field
- brex.create_budgetCreate Budget
- brex.create_vendorCreate Vendor
- brex.update_budgetUpdate Budget
- brex.update_vendorUpdate Vendor
- brex.create_expenseCreate Expense
- brex.update_expenseUpdate Expense
- brex.create_documentCreate Document Upload for Referral
- brex.create_locationCreate Location
- brex.create_budget_v1Create Spend Limit (Budget V1)
- brex.update_budget_v1Update Spend Limit (V1)
destructive
5Delete, cancel or archive. Ask first, or deny outright.
- brex.delete_fieldDelete Field
- brex.delete_vendorDelete Vendor
- brex.archive_budgetArchive Budget
- brex.archive_spend_limitArchive Spend Limit
- brex.delete_field_valuesDelete Field Values
Brex in three steps.
- 01Your users connect BrexThey sign in to Brex on Arc0 Connect, under your brand, and approve the access you ask for.
- 02You set the rulesReads run, writes like “create Card” can wait for the user, and “delete Field” can be denied outright.
- 03Any agent can actYour agent calls Brex through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('brex', { read: 'allow', write: 'ask', // create_card destructive: 'deny', // delete_field }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Brex connects.
Users sign in to Brex on Arc0 Connect and approve the scopes you request. Build with Arc0’s Brex OAuth app, or bring your own so the Brex consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
The same Brex connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- API key · OAuth 2.0
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Brex from any agent.
More finance and accounting apps.
Brex and Arc0, answered.
Can I use Brex with Claude, ChatGPT or Cursor?
Yes. Connect Brex to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Brex actions you allow.
How do users connect Brex?
Users sign in to Brex on Arc0 Connect and approve the scopes you request. Build with Arc0’s Brex OAuth app, or bring your own so the Brex consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
Which Brex actions can my agent take?
84 in total: 47 read, 32 write and 5 destructive, such as “create Card”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Brex?
Yes. Actions like “delete Field” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Brex too?
Yes. The same Brex connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Brex into your agent.
Your users connect Brex once, under your brand. Your agent gets 84 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan