Netsuite for AI agents
NetSuite is Oracle's cloud ERP suite combining accounting, CRM, e-commerce, and inventory management for company-wide financial and operational oversight in one system. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Netsuite.
Look up a customer's record
Pull a customer's account and balance details before answering a finance question, read-only.
Create a sales order
Create a sales order once a deal is confirmed in another system.
Approve before deleting a record
Require approval before deleting a financial record such as an invoice or vendor bill, since it affects the books.
86 Netsuite actions, graded by risk.
Every Netsuite action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
34Look things up. Allowed by default.
- netsuite.get_itemGet Item
- netsuite.get_vendorGet Vendor
- netsuite.get_invoiceGet Invoice
- netsuite.get_customerGet Customer
- netsuite.get_employeeGet Employee
- netsuite.list_recordsList Records
- netsuite.get_subrecordGet Subrecord
- netsuite.list_datasetsList Datasets
- netsuite.list_invoicesList Invoices
- netsuite.list_employeesList Employees
- netsuite.get_sales_orderGet Sales Order
- netsuite.get_server_timeGet Server Time
- netsuite.get_vendor_billGet Vendor Bill
- netsuite.get_item_receiptGet Item Receipt
- netsuite.get_sublist_lineGet Sublist Line
- netsuite.get_journal_entryGet Journal Entry
write
40Create and change things. Allow, or ask the user first.
- netsuite.create_itemCreate Item
- netsuite.update_itemUpdate Item
- netsuite.create_recordCreate Record
- netsuite.create_vendorCreate Vendor
- netsuite.update_vendorUpdate Vendor
- netsuite.create_invoiceCreate Invoice
- netsuite.update_invoiceUpdate Invoice
- netsuite.create_customerCreate Customer
- netsuite.create_employeeCreate Employee
- netsuite.update_customerUpdate Customer
- netsuite.update_employeeUpdate Employee
- netsuite.create_sales_orderCreate Sales Order
- netsuite.create_vendor_billCreate Vendor Bill
- netsuite.update_sales_orderUpdate Sales Order
- netsuite.update_vendor_billUpdate Vendor Bill
- netsuite.update_item_receiptUpdate Item Receipt
destructive
12Delete, cancel or archive. Ask first, or deny outright.
- netsuite.delete_itemDelete Item
- netsuite.delete_invoiceDelete Invoice
- netsuite.delete_customerDelete Customer
- netsuite.delete_employeeDelete Employee
- netsuite.delete_sales_orderDelete Sales Order
- netsuite.delete_item_receiptDelete Item Receipt
- netsuite.delete_journal_entryDelete Journal Entry
- netsuite.delete_purchase_orderDelete Purchase Order
- netsuite.delete_vendor_paymentDelete Vendor Payment
- netsuite.delete_customer_paymentDelete Customer Payment
- netsuite.delete_item_fulfillmentDelete Item Fulfillment
- netsuite.o_auth2_revoke_refresh_tokenRevoke OAuth2 Refresh Token
Netsuite in three steps.
- 01Your users connect NetsuiteThey sign in to Netsuite on Arc0 Connect, under your brand, and approve the access you ask for.
- 02You set the rulesReads run, writes like “create Item” can wait for the user, and “delete Item” can be denied outright.
- 03Any agent can actYour agent calls Netsuite through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('netsuite', { read: 'allow', write: 'ask', // create_item destructive: 'deny', // delete_item }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Netsuite connects.
Users sign in to Netsuite on Arc0 Connect and approve the scopes you request. Build with Arc0’s Netsuite OAuth app, or bring your own so the Netsuite consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
The same Netsuite connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- OAuth 2.0
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Netsuite from any agent.
More finance and accounting apps.
Netsuite and Arc0, answered.
Can I use Netsuite with Claude, ChatGPT or Cursor?
Yes. Connect Netsuite to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Netsuite actions you allow.
How do users connect Netsuite?
Users sign in to Netsuite on Arc0 Connect and approve the scopes you request. Build with Arc0’s Netsuite OAuth app, or bring your own so the Netsuite consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
Which Netsuite actions can my agent take?
86 in total: 34 read, 40 write and 12 destructive, such as “create Item”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Netsuite?
Yes. Actions like “delete Item” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Netsuite too?
Yes. The same Netsuite connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Netsuite into your agent.
Your users connect Netsuite once, under your brand. Your agent gets 86 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan