OneDrive for AI agents
OneDrive is Microsoft's cloud storage service for storing, syncing, and sharing files and Office documents across devices. Individuals and businesses use it for everyday file storage and collaboration. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in OneDrive.
Share a file with a colleague
Create a sharing link for a document so a colleague can view or edit it without an email attachment.
Check a file's metadata read-only
Look up a drive item's metadata and version history before deciding whether to update it.
Permanently delete a file with approval
Remove a file beyond the recycle bin only after explicit approval, since the action is irreversible.
88 OneDrive actions, graded by risk.
Every OneDrive action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
46Look things up. Allowed by default.
- onedrive.get_itemGet Item Metadata
- onedrive.get_rootGet Drive Root Folder
- onedrive.get_siteGet Site Details
- onedrive.get_userGet User Profile
- onedrive.get_driveGet Drive
- onedrive.get_shareGet Shared Item by ShareId
- onedrive.list_drivesList Drives
- onedrive.list_bundlesList Drive Bundles
- onedrive.search_itemsSearch Items
- onedrive.get_group_driveGet Group Drive
- onedrive.list_activitiesList Drive Activities
- onedrive.list_site_listsList Site Lists
- onedrive.get_recent_itemsGet Recent Items
- onedrive.get_shared_itemsGet Shared Items
- onedrive.get_followed_itemGet Drives Following
- onedrive.get_item_versionsGet Item Versions
write
33Create and change things. Allow, or ask the user first.
- onedrive.create_linkCreate Sharing Link
- onedrive.update_file_contentUpdate File Content
- onedrive.update_workbook_rangeUpdate Workbook Range
- onedrive.add_workbook_worksheetAdd Workbook Worksheet
- onedrive.create_item_permissionCreate Drive Item Permission
- onedrive.create_workbook_sessionCreate Workbook Session
- onedrive.update_workbook_worksheetUpdate Workbook Worksheet
- onedrive.update_drive_item_metadataUpdate Drive Item Metadata
- onedrive.create_sharepoint_list_itemCreate SharePoint List Item
- onedrive.update_drive_items_permissionsUpdate Drive Item Permissions
- onedrive.update_sharepoint_item_permissionUpdate SharePoint Item Permission
- onedrive.update_sharepoint_list_item_fieldsUpdate SharePoint List Item Fields
- onedrive.copy_itemCopy Item
- onedrive.move_itemMove Item
- onedrive.follow_itemFollow Drive Item
- onedrive.checkin_itemCheck In Drive Item
destructive
9Delete, cancel or archive. Ask first, or deny outright.
- onedrive.delete_itemDelete Item
- onedrive.delete_workbook_rangeDelete Workbook Range
- onedrive.delete_item_permissionDelete Drive Item Permission
- onedrive.delete_item_permanentlyPermanently Delete Drive Item
- onedrive.delete_share_permissionDelete Shares Permission
- onedrive.delete_workbook_worksheetDelete Workbook Worksheet
- onedrive.delete_sharepoint_item_permissionDelete SharePoint Item Permission
- onedrive.clear_workbook_rangeClear Workbook Range
- onedrive.close_workbook_sessionClose Workbook Session
OneDrive in three steps.
- 01Your users connect OneDriveThey sign in to OneDrive on Arc0 Connect, under your brand, and approve the access you ask for.
- 02You set the rulesReads run, writes like “create Sharing Link” can wait for the user, and “delete Item” can be denied outright.
- 03Any agent can actYour agent calls OneDrive through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('onedrive', { read: 'allow', write: 'ask', // create_link destructive: 'deny', // delete_item }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How OneDrive connects.
Users sign in to OneDrive on Arc0 Connect and approve the scopes you request. Build with Arc0’s OneDrive OAuth app, or bring your own so the OneDrive consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
The same OneDrive connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- OAuth 2.0 · OAuth 2.0 client credentials
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use OneDrive from any agent.
OneDrive and Arc0, answered.
Can I use OneDrive with Claude, ChatGPT or Cursor?
Yes. Connect OneDrive to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the OneDrive actions you allow.
How do users connect OneDrive?
Users sign in to OneDrive on Arc0 Connect and approve the scopes you request. Build with Arc0’s OneDrive OAuth app, or bring your own so the OneDrive consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
Which OneDrive actions can my agent take?
88 in total: 46 read, 33 write and 9 destructive, such as “create Sharing Link”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in OneDrive?
Yes. Actions like “delete Item” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call OneDrive too?
Yes. The same OneDrive connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug OneDrive into your agent.
Your users connect OneDrive once, under your brand. Your agent gets 88 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan