Turbot Pipes for AI agents

Turbot Pipes hosts cloud infrastructure data and dashboards for DevOps teams, used to query, snapshot, and share views of cloud resources and security posture. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.

Developer toolsAPI keyMCP + RESTturbot.com
AUDIT LOG · TURBOT PIPESPOLICY: acme-support
09:41:07 · claude · u_8f2read
turbot_pipes.list_tenants
List Tenants✓ allowed · 212ms
09:41:08 · claude · u_8f2read
turbot_pipes.get_org
Get Organization✓ allowed · 164ms
09:41:09 · claude · u_8f2write
turbot_pipes.create_auth_signup
Create User Signup✓ approved · approved by user
09:41:12 · claude · u_8f2destructive
turbot_pipes.delete_org
Delete Organization✕ blocked · policy: deny
EVERY TURBOT PIPES CALL, ON THE RECORD
01 · USE CASES

What agents do in Turbot Pipes.

01

List actor connections

Pull the cloud connections available to the current user, a read-only inventory check.

02

Create a workspace snapshot

Save a snapshot of a dashboard's current state for later reference.

03

Confirm before deleting an organization

Check with the user before deleting an organization, since its workspaces and connections go with it.

02 · ACTIONS

170 Turbot Pipes actions, graded by risk.

Every Turbot Pipes action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.

read

99

Look things up. Allowed by default.

  • turbot_pipes.get_org
    Get Organization
  • turbot_pipes.get_user
    Get User
  • turbot_pipes.get_tenant
    Get Tenant
  • turbot_pipes.list_tenants
    List Tenants
  • turbot_pipes.get_org_member
    Get Organization Member
  • turbot_pipes.get_user_email
    Get User Email
  • turbot_pipes.list_org_usage
    List Organization Usage
  • turbot_pipes.get_user_ai_key
    Get User AI Key
  • turbot_pipes.list_user_usage
    List User Usage
  • turbot_pipes.get_user_process
    Get User Process
  • turbot_pipes.list_org_process
    List Organization Processes
  • turbot_pipes.list_user_emails
    List User Emails
  • turbot_pipes.get_auth_provider
    Get Auth Provider
  • turbot_pipes.get_tenant_avatar
    Get Tenant Avatar
  • turbot_pipes.get_user_password
    Get User Database Password
  • turbot_pipes.list_user_ai_keys
    List User AI Keys
+ 83 MORE

write

56

Create and change things. Allow, or ask the user first.

  • turbot_pipes.update_user
    Update User
  • turbot_pipes.update_org_member
    Update Organization Member Role
  • turbot_pipes.update_user_token
    Update User Token
  • turbot_pipes.create_auth_signup
    Create User Signup
  • turbot_pipes.create_user_ai_key
    Create User AI Key
  • turbot_pipes.update_user_ai_key
    Update User AI Key
  • turbot_pipes.create_user_notifier
    Create User Notifier
  • turbot_pipes.create_user_password
    Create User Password
  • turbot_pipes.create_org_connection
    Create org connection
  • turbot_pipes.update_org_connection
    Update Org Connection
  • turbot_pipes.update_user_workspace
    Update User Workspace
  • turbot_pipes.create_user_connection
    Create User Connection
  • turbot_pipes.update_user_connection
    Update User Connection
  • turbot_pipes.create_user_integration
    Create User Integration
  • turbot_pipes.update_user_integration
    Update User Integration
  • turbot_pipes.update_user_preferences
    Update User Preferences
+ 40 MORE

destructive

15

Delete, cancel or archive. Ask first, or deny outright.

  • turbot_pipes.delete_org
    Delete Organization
  • turbot_pipes.delete_user_avatar
    Delete User Avatar
  • turbot_pipes.delete_org_workspace
    Delete Organization Workspace
  • turbot_pipes.delete_conversation_org
    Delete Org Workspace Conversation
  • turbot_pipes.delete_user_integration
    Delete User Integration
  • turbot_pipes.delete_user_workspace_notifier
    Delete User Workspace Notifier
  • turbot_pipes.delete_user_workspace_pipeline
    Delete User Workspace Pipeline
  • turbot_pipes.delete_org_billing_subscription
    Delete Org Billing Subscription
  • turbot_pipes.delete_org_connection_permission
    Delete Org Connection Permission
  • turbot_pipes.delete_user_connection_deprecated
    Delete User Connection (Deprecated)
  • turbot_pipes.delete_org_workspace_mod_variable_setting
    Delete Org Workspace Mod Variable Setting
  • turbot_pipes.delete_user_workspace_mod_variable_setting
    Delete User Workspace Mod Variable Setting
  • turbot_pipes.user_tokens_delete
    Delete User Token
  • turbot_pipes.uninstall_flowpipe_mod
    Uninstall Flowpipe Mod
  • turbot_pipes.uninstall_org_workspace_flowpipe_mod
    Uninstall Org Workspace Flowpipe Mod
03 · HOW IT WORKS

Turbot Pipes in three steps.

  1. 01Your users connect Turbot PipesThey add their Turbot Pipes api key on Arc0 Connect, under your brand. It goes straight into the vault.
  2. 02You set the rulesReads run, writes like “create User Signup” can wait for the user, and “delete Organization” can be denied outright.
  3. 03Any agent can actYour agent calls Turbot Pipes through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
POLICY.TS
await arc0.policies.set('turbot_pipes', {
  read: 'allow',
  write: 'ask',        // create_auth_signup
  destructive: 'deny',  // delete_org
})

# Claude Code: the same connection, one URL
$ claude mcp add --transport http arc0 \
    https://mcp.arc0.ai/u/u_8f2
04 · AUTH AND DATA

How Turbot Pipes connects.

Users add their Turbot Pipes api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

The same Turbot Pipes connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →

AUTH
API key
CREDENTIALS
Per-tenant encrypted vault
MODEL SEES
Results only, never credentials
AUDIT LOG
Every call, on every plan
05 · WORKS WITH

Use Turbot Pipes from any agent.

Claude
ChatGPT
Cursor
Codex
VS Code
OpenAI Agents SDK
Claude Agent SDK
Vercel AI SDK
Mastra
LangGraph
07 · FAQ

Turbot Pipes and Arc0, answered.

Q01

Can I use Turbot Pipes with Claude, ChatGPT or Cursor?

Yes. Connect Turbot Pipes to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Turbot Pipes actions you allow.

Q02

How do users connect Turbot Pipes?

Users add their Turbot Pipes api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

Q03

Which Turbot Pipes actions can my agent take?

170 in total: 99 read, 56 write and 15 destructive, such as “create User Signup”. Your policies decide which of them each agent may call.

Q04

Can I stop my agent from deleting things in Turbot Pipes?

Yes. Actions like “delete Organization” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.

Q05

Can my own backend call Turbot Pipes too?

Yes. The same Turbot Pipes connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.

Get started

Plug Turbot Pipes into your agent.

Your users connect Turbot Pipes once, under your brand. Your agent gets 170 actions behind your policies, with every call on the record.

Free to build · MCP + REST · Audit log on every plan