SharePoint for AI agents
SharePoint is Microsoft's platform for document management and team intranets, storing files and lists that teams collaborate on. Organizations use it to organize and secure shared content. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in SharePoint.
Create a sharing link for a file
Generate a sharing link for a document so a colleague or partner can access it directly.
Add an item to a list
Create a new list item, such as a task or record, inside a SharePoint list.
Confirm before deleting a file
Check a file or folder's contents and get approval before permanently deleting it from the library.
105 SharePoint actions, graded by risk.
Every SharePoint action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
57Look things up. Allowed by default.
- sharepoint.list_sitesList SharePoint Sites
- sharepoint.get_changesGet SharePoint List Changes
- sharepoint.get_web_infoGet SharePoint Web Info
- sharepoint.search_filesSearch Files Across All Sites
- sharepoint.search_querySearch SharePoint Site
- sharepoint.get_site_rootGet SharePoint Root Site
- sharepoint.get_list_itemsGet SharePoint List Items
- sharepoint.get_site_by_idGet SharePoint Site by ID
- sharepoint.list_all_listsList SharePoint Lists
- sharepoint.search_suggestSearch Suggest
- sharepoint.get_all_foldersGet All SharePoint Folders
- sharepoint.get_drive_by_idGet Drive by ID
- sharepoint.get_group_usersGet Group Users
- sharepoint.get_my_followedGet Followed Entities
- sharepoint.list_site_usersList Site Users
- sharepoint.get_content_typeGet Content Type
write
39Create and change things. Allow, or ask the user first.
- sharepoint.create_webCreate SharePoint Subsite
- sharepoint.update_listUpdate SharePoint List
- sharepoint.update_siteUpdate SharePoint Site
- sharepoint.update_file_itemUpdate File Item Metadata
- sharepoint.update_list_itemUpdate SharePoint List Item
- sharepoint.create_list_fieldCreate SharePoint List Field
- sharepoint.update_drive_itemUpdate Drive Item
- sharepoint.update_list_fieldUpdate SharePoint List Field
- sharepoint.create_content_typeCreate Content Type
- sharepoint.update_content_typeUpdate SharePoint Content Type
- sharepoint.create_list_item_by_idCreate SharePoint List Item by GUID
- sharepoint.create_list_item_in_folderCreate List Item in Folder
- sharepoint.add_attachment_to_list_itemAdd Attachment to List Item
- sharepoint.add_role_assignment_to_itemAdd Role Assignment to List Item
- sharepoint.add_role_assignment_to_listAdd Role Assignment to SharePoint List
- sharepoint.add_field_link_to_content_typeAdd Field Link to Content Type
destructive
9Delete, cancel or archive. Ask first, or deny outright.
- sharepoint.delete_listDelete SharePoint List
- sharepoint.delete_folderDelete SharePoint Folder
- sharepoint.delete_file_itemDelete SharePoint File
- sharepoint.delete_list_itemDelete SharePoint List Item
- sharepoint.delete_list_itemsDelete Multiple SharePoint List Items
- sharepoint.delete_list_by_titleDelete SharePoint List By Title
- sharepoint.delete_drive_item_version_contentDelete Drive Item Version Content
- sharepoint.delete_recycle_bin_item_permanentDelete Recycle Bin Item Permanently
- sharepoint.sharepoint_remove_userRemove SharePoint User
SharePoint in three steps.
- 01Your users connect SharePointThey sign in to SharePoint on Arc0 Connect, under your brand, and approve the access you ask for.
- 02You set the rulesReads run, writes like “create SharePoint Subsite” can wait for the user, and “delete SharePoint List” can be denied outright.
- 03Any agent can actYour agent calls SharePoint through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('sharepoint', { read: 'allow', write: 'ask', // create_web destructive: 'deny', // delete_list }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How SharePoint connects.
Users sign in to SharePoint on Arc0 Connect and approve the scopes you request. Build with Arc0’s SharePoint OAuth app, or bring your own so the SharePoint consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
The same SharePoint connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- OAuth 2.0 · OAuth 2.0 client credentials
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use SharePoint from any agent.
SharePoint and Arc0, answered.
Can I use SharePoint with Claude, ChatGPT or Cursor?
Yes. Connect SharePoint to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the SharePoint actions you allow.
How do users connect SharePoint?
Users sign in to SharePoint on Arc0 Connect and approve the scopes you request. Build with Arc0’s SharePoint OAuth app, or bring your own so the SharePoint consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
Which SharePoint actions can my agent take?
105 in total: 57 read, 39 write and 9 destructive, such as “create SharePoint Subsite”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in SharePoint?
Yes. Actions like “delete SharePoint List” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call SharePoint too?
Yes. The same SharePoint connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug SharePoint into your agent.
Your users connect SharePoint once, under your brand. Your agent gets 105 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan