Workday for AI agents
Workday is enterprise HR and finance software, used by large organizations to manage employee records, compensation, and business processes. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Workday.
Create an expense report
Start a new expense report with its line items for approval and reimbursement.
Approve a business process step
Approve a pending step in a workflow, like a job change or time off request, after review.
Confirm before canceling a business process
Check with the user before canceling a submitted business process event, since it stops the workflow for everyone involved.
587 Workday actions, graded by risk.
Every Workday action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
423Look things up. Allowed by default.
- workday.get_caseGet Case
- workday.get_giftsGet Gifts
- workday.list_jobsList Jobs
- workday.get_grantsGet Grants
- workday.get_personGet Person
- workday.get_workerGet Worker
- workday.get_degreesGet Degrees
- workday.get_requestGet Request
- workday.get_worker2Get Worker (Time Tracking)
- workday.list_peopleList People
- workday.get_currencyGet Currency
- workday.get_programsGet Programs
- workday.get_prospectGet Prospect
- workday.list_workersList Workers
- workday.get_case_typeGet Case Type
- workday.get_check_insGet Check Ins
write
144Create and change things. Allow, or ask the user first.
- workday.create_caseCreate Case
- workday.send_messageSend Message
- workday.create_requestCreate Request
- workday.post_wql_queryPost WQL Query
- workday.create_prospectCreate Prospect
- workday.create_tax_rateCreate Tax Rate
- workday.create_custom_objectCreate Custom Object
- workday.create_expense_entryCreate Expense Entry
- workday.update_custom_objectUpdate Custom Object
- workday.update_expense_entryUpdate Expense Entry
- workday.create_expense_reportCreate Expense Report
- workday.create_payroll_inputsCreate Payroll Inputs
- workday.create_prospect_skillCreate Prospect Skill
- workday.create_succession_planCreate Succession Plan
- workday.update_worker_check_inUpdate Worker Check-In
- workday.create_message_templateCreate Message Template
destructive
20Delete, cancel or archive. Ask first, or deny outright.
- workday.delete_custom_objectDelete Custom Object
- workday.delete_expense_entryDelete Expense Entry
- workday.delete_payroll_inputDelete Payroll Input
- workday.delete_scorecard_resultDelete Scorecard Result
- workday.delete_time_clock_eventDelete Time Clock Event
- workday.cancel_business_process_eventCancel Business Process Event
- workday.delete_compensation_scorecardDelete Compensation Scorecard
- workday.delete_home_contact_change_addressDelete Home Contact Change Address
- workday.delete_work_contact_change_addressDelete Work Contact Change Address
- workday.delete_home_contact_change_web_addressDelete Home Contact Change Web Address
- workday.delete_work_contact_change_web_addressDelete Work Contact Change Web Address
- workday.delete_home_contact_change_phone_numberDelete Home Contact Change Phone Number
- workday.delete_work_contact_change_phone_numberDelete Work Contact Change Phone Number
- workday.delete_work_contact_change_email_addressDelete Work Contact Change Email Address
- workday.delete_custom_object_definition_validationDelete Custom Object Definition Validation
- workday.delete_home_contact_change_instant_messengerDelete Home Contact Change Instant Messenger
Workday in three steps.
- 01Your users connect WorkdayThey sign in to Workday on Arc0 Connect, under your brand, and approve the access you ask for.
- 02You set the rulesReads run, writes like “create Case” can wait for the user, and “delete Custom Object” can be denied outright.
- 03Any agent can actYour agent calls Workday through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('workday', { read: 'allow', write: 'ask', // create_case destructive: 'deny', // delete_custom_object }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Workday connects.
Users sign in to Workday on Arc0 Connect and approve the scopes you request. Build with Arc0’s Workday OAuth app, or bring your own so the Workday consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
The same Workday connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- OAuth 2.0
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Workday from any agent.
Workday and Arc0, answered.
Can I use Workday with Claude, ChatGPT or Cursor?
Yes. Connect Workday to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Workday actions you allow.
How do users connect Workday?
Users sign in to Workday on Arc0 Connect and approve the scopes you request. Build with Arc0’s Workday OAuth app, or bring your own so the Workday consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
Which Workday actions can my agent take?
587 in total: 423 read, 144 write and 20 destructive, such as “create Case”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Workday?
Yes. Actions like “delete Custom Object” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Workday too?
Yes. The same Workday connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Workday into your agent.
Your users connect Workday once, under your brand. Your agent gets 587 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan