Odoo for AI agents
Odoo is an open-source ERP and CRM platform covering sales, accounting, inventory, and project management for growing businesses. Operations teams use it as their system of record across departments. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Odoo.
Create a new contact record
Add a contact with company and role details so it is ready for a sales or support workflow.
Parse an incoming invoice
Extract line items and totals from an uploaded invoice document for review before posting.
Update a record with approval
Change a customer or order record only after the update is confirmed, since Odoo is the system of record.
12 Odoo actions, graded by risk.
Every Odoo action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
9Look things up. Allowed by default.
- odoo.list_databasesList Databases
- odoo.get_expense_resultGet Expense Extraction Result
- odoo.get_invoice_resultGet Invoice Parsing Result
- odoo.get_applicant_resultGet Applicant Parsing Result
- odoo.get_bank_statement_resultGet Bank Statement Result
- odoo.parse_expenseParse Expense Document
- odoo.parse_invoiceParse Invoice Document
- odoo.parse_applicantParse Applicant Resume
- odoo.parse_bank_statementParse Bank Statement Document
write
3Create and change things. Allow, or ask the user first.
- odoo.update_recordUpdate Odoo Record
- odoo.create_contactCreate Contact
- odoo.call_odoo_jsonrpcOdoo JSON-RPC Call
destructive
0Delete, cancel or archive. Ask first, or deny outright.
- No destructive actions.
Odoo in three steps.
- 01Your users connect OdooThey add their Odoo api key on Arc0 Connect, under your brand. It goes straight into the vault.
- 02You set the rulesReads run, and writes like “create Contact” can wait for the user to approve.
- 03Any agent can actYour agent calls Odoo through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('odoo', { read: 'allow', write: 'ask', // create_contact destructive: 'deny', }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Odoo connects.
Users add their Odoo api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
The same Odoo connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- API key
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Odoo from any agent.
Odoo and Arc0, answered.
Can I use Odoo with Claude, ChatGPT or Cursor?
Yes. Connect Odoo to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Odoo actions you allow.
How do users connect Odoo?
Users add their Odoo api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
Which Odoo actions can my agent take?
12 in total: 9 read, 3 write and 0 destructive, such as “create Contact”. Your policies decide which of them each agent may call.
Can I make my agent read-only in Odoo?
Yes. Allow read actions and deny writes in the Odoo policy. Your agent can still look things up, and any write it attempts is blocked and logged.
Can my own backend call Odoo too?
Yes. The same Odoo connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Odoo into your agent.
Your users connect Odoo once, under your brand. Your agent gets 12 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan