Toggl for AI agents

Toggl is a time tracking tool for logging work hours, projects, and clients, used by freelancers and teams that need accurate records of billable time. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.

HR and recruitingAPI keyMCP + RESTtoggl.com
AUDIT LOG · TOGGLPOLICY: acme-support
09:41:07 · claude · u_8f2read
toggl.get_keys
Get JWKS Keys✓ allowed · 212ms
09:41:08 · claude · u_8f2read
toggl.get_tags
Get Tags✓ allowed · 164ms
09:41:09 · claude · u_8f2write
toggl.create_tag
Create Tag✓ approved · approved by user
09:41:12 · claude · u_8f2destructive
toggl.delete_tag
Delete Tag✕ blocked · policy: deny
EVERY TOGGL CALL, ON THE RECORD
01 · USE CASES

What agents do in Toggl.

01

Create a time entry

Log time spent on a project or task for later reporting.

02

Get the current time entry

Check whether a timer is currently running, a read-only status check.

03

Confirm before deleting a client

Check with the user before deleting a client, since projects and time entries reference it.

02 · ACTIONS

56 Toggl actions, graded by risk.

Every Toggl action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.

read

34

Look things up. Allowed by default.

  • toggl.get_keys
    Get JWKS Keys
  • toggl.get_tags
    Get Tags
  • toggl.get_tasks
    List Tasks
  • toggl.get_status
    Get Webhooks Status
  • toggl.get_my_quota
    Get My Quota
  • toggl.get_projects
    Get Projects
  • toggl.get_all_plans
    Get All Plans
  • toggl.get_countries
    Get Countries
  • toggl.get_timezones
    Get Timezones
  • toggl.get_user_tags
    Get User Tags
  • toggl.get_currencies
    Get Currencies
  • toggl.get_time_entry
    Get Time Entry
  • toggl.get_user_tasks
    Get User Tasks
  • toggl.get_my_location
    Get My Location
  • toggl.get_list_clients
    List Clients
  • toggl.get_time_entries
    Get Time Entries
+ 18 MORE

write

15

Create and change things. Allow, or ask the user first.

  • toggl.create_tag
    Create Tag
  • toggl.create_group
    Create Group
  • toggl.create_client
    Create Client
  • toggl.update_client
    Update Client
  • toggl.create_project
    Create Project
  • toggl.send_demo_email
    Send Demo Email
  • toggl.send_smail_meet
    Send Smail Meet
  • toggl.create_invitation
    Create Invitation
  • toggl.create_time_entry
    Create Time Entry
  • toggl.send_email_contact
    Send Email to Contact
  • toggl.create_organization
    Create Organization
  • toggl.create_workspaces_project_users
    Add User to Workspace Project
  • toggl.put_update_tag
    Update Tag
  • toggl.edit_time_entries
    Bulk Edit Time Entries
  • toggl.patch_stop_time_entry
    Stop Time Entry

destructive

7

Delete, cancel or archive. Ask first, or deny outright.

  • toggl.delete_tag
    Delete Tag
  • toggl.delete_group
    Delete Group
  • toggl.delete_client
    Delete Toggl Client
  • toggl.delete_subscription
    Delete Subscription
  • toggl.delete_project_group
    Delete Project Group
  • toggl.disable_weekly_report
    Disable Weekly Report
  • toggl.post_me_disable_product_emails
    Disable Product Emails
03 · HOW IT WORKS

Toggl in three steps.

  1. 01Your users connect TogglThey add their Toggl api key on Arc0 Connect, under your brand. It goes straight into the vault.
  2. 02You set the rulesReads run, writes like “create Tag” can wait for the user, and “delete Tag” can be denied outright.
  3. 03Any agent can actYour agent calls Toggl through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
POLICY.TS
await arc0.policies.set('toggl', {
  read: 'allow',
  write: 'ask',        // create_tag
  destructive: 'deny',  // delete_tag
})

# Claude Code: the same connection, one URL
$ claude mcp add --transport http arc0 \
    https://mcp.arc0.ai/u/u_8f2
04 · AUTH AND DATA

How Toggl connects.

Users add their Toggl api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

The same Toggl connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →

AUTH
API key
CREDENTIALS
Per-tenant encrypted vault
MODEL SEES
Results only, never credentials
AUDIT LOG
Every call, on every plan
05 · WORKS WITH

Use Toggl from any agent.

Claude
ChatGPT
Cursor
Codex
VS Code
OpenAI Agents SDK
Claude Agent SDK
Vercel AI SDK
Mastra
LangGraph
07 · FAQ

Toggl and Arc0, answered.

Q01

Can I use Toggl with Claude, ChatGPT or Cursor?

Yes. Connect Toggl to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Toggl actions you allow.

Q02

How do users connect Toggl?

Users add their Toggl api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

Q03

Which Toggl actions can my agent take?

56 in total: 34 read, 15 write and 7 destructive, such as “create Tag”. Your policies decide which of them each agent may call.

Q04

Can I stop my agent from deleting things in Toggl?

Yes. Actions like “delete Tag” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.

Q05

Can my own backend call Toggl too?

Yes. The same Toggl connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.

Get started

Plug Toggl into your agent.

Your users connect Toggl once, under your brand. Your agent gets 56 actions behind your policies, with every call on the record.

Free to build · MCP + REST · Audit log on every plan