API_KEY
grafbase_api_key
Developer setup
No fields declared in this snapshot.
User connection
- Project Subdomainsubdomain · stringRequired
- Grafbase API Keygeneric_api_key · stringRequired
GRAFBASE
Grafbase is a platform that accelerates the development of GraphQL APIs, offering features like edge caching, unified data access, and seamless integration with popular authentication strategies.
Description is untrusted, display-only upstream metadata. It never becomes policy, OAuth scope authority, or an agent instruction.
Pakkawork boundary
Research catalogue metadata only. No Pakkawork OAuth, credential, host, quota, executor, or verifier is enabled.
28
Action summaries
Display-only definitions
0
Trigger types
Not installed instances
1
Auth modes
Field names, never values
No
Execution
No runtime adapter
Authentication map
API_KEY
No fields declared in this snapshot.
Capability index
Showing 1–28 of 28 actions
GRAFBASE_ADD_ZITADEL_REDIRECT
Add a redirect URI to Zitadel OAuth configuration in Grafbase. Use when you need to register a new redirect URI for OAuth flows with Zitadel identity provider.
Untrusted display-only summary
GRAFBASE_ASSIGN_TEAM_ROLE
Tool to assign a role to a team member in Grafbase. Use this when you need to change a team member's role between MEMBER and ADMIN. ADMIN role grants team management privileges including adding/removing members and changing roles.
Untrusted display-only summary
GRAFBASE_DELETE_API_KEY
Delete an existing Grafbase API key (access token) by ID. Use after confirming the key ID via the List API Keys action. This action permanently revokes the API key's access.
Untrusted display-only summary
GRAFBASE_DELETE_AUDIT_LOG
Tool to delete a specific Grafbase audit log entry. IMPORTANT: Grafbase does not expose a public API to delete audit logs. Audit logs are read-only compliance records retained for 90 days and can only be exported as CSV from the Grafbase Dashboard. This action validates connectivity to the Grafbase API and returns an…
Untrusted display-only summary
GRAFBASE_DELETE_EXTENSION
Tool to delete a Grafbase extension configuration by its unique ID. Note: Grafbase extensions are primarily configured via grafbase.toml configuration file and WebAssembly modules, not through a REST API. This action attempts to delete via the API endpoint if it exists; otherwise, it returns guidance on how to remove…
Untrusted display-only summary
GRAFBASE_DELETE_MCP_SERVER
Tool to delete a Grafbase MCP server configuration by its unique ID. Note: Grafbase MCP is primarily configured via grafbase.toml configuration file, not through a REST API. This action attempts to delete via the API endpoint if it exists; otherwise, it returns guidance on how to disable MCP via configuration. Use thi…
Untrusted display-only summary
GRAFBASE_DELETE_SCHEMA
Tool to delete a subgraph from a Grafbase federated graph. Use this when you need to remove a subgraph from the schema registry. The operation can be run as a dry run first to check if deletion would cause composition errors in the federated graph. Required: account_slug, subgraph_name Optional: branch (defaults to 'm…
Untrusted display-only summary
GRAFBASE_DELETE_SCHEMA_CHECK
Attempt to delete a schema check from the Grafbase platform. IMPORTANT LIMITATION: The Grafbase Platform API does not support deleting schema checks. Schema checks are immutable audit records that provide a historical trail of schema validations. They cannot be deleted through the API. This action will verify the sche…
Untrusted display-only summary
GRAFBASE_DELETE_TEAM
Tool to delete a team from the Grafbase organization. Use when removing a team that is no longer needed. This action permanently removes the team and its associated permissions.
Untrusted display-only summary
GRAFBASE_DISABLE_MCP
Disable the Model Context Protocol (MCP) server for a Grafbase project. MCP enables AI agents to query your GraphQL APIs using natural language. Use this action when you need to turn off MCP access to your API. Note: In most Grafbase deployments, MCP is configured via grafbase.toml (setting [mcp].enabled = false). Thi…
Untrusted display-only summary
GRAFBASE_ENABLE_MCP
Enable the Model Context Protocol (MCP) server on a Grafbase gateway. MCP allows AI tools (like Cursor, Windsurf, VS Code) to explore and query your GraphQL API using natural language. This tool attempts to enable MCP via the gateway API. Note: MCP is typically enabled via gateway configuration (grafbase.toml with [mc…
Untrusted display-only summary
GRAFBASE_GET_AUDIT_LOG
Tool to retrieve a specific Grafbase audit log entry by searching organization activity. Note: Grafbase does not expose a direct API to fetch individual audit log entries by ID. This action queries organization member activity via the GraphQL API and attempts to find a matching entry based on the provided log_id (whic…
Untrusted display-only summary
GRAFBASE_GET_EXTENSION_BY_NAME
Tool to retrieve a Grafbase extension by its name. Returns detailed information including the extension's ID, name, versions, and ownership details. Use this when you need to look up an extension by name rather than ID.
Untrusted display-only summary
GRAFBASE_GET_EXTENSION_VERSION_BY_NAME_AND_VERSION
Tool to retrieve details of a specific Grafbase extension version by name and version. Use when you need to query information about a particular version of an extension, including its creation date and license.
Untrusted display-only summary
GRAFBASE_GET_FEDERATED_SCHEMA
Retrieves the composed federated graph schema from Grafbase in SDL format. Use this to inspect the unified schema after all subgraph schemas have been composed. Returns the full GraphQL SDL including all types, queries, mutations, and subscriptions. Requires at least one federated graph with published subgraphs to ret…
Untrusted display-only summary
GRAFBASE_GET_INVITATION
Tool to retrieve details about a specific Grafbase invitation by ID. Use when you need to check the status, email, or creation date of an invitation.
Untrusted display-only summary
GRAFBASE_GET_NOTIFICATIONS_INBOX_MESSAGES
Tool to retrieve notifications inbox messages for the authenticated Grafbase user. Returns all notification messages with counts of total and unread notifications. Use when you need to check for new notifications or see notification history.
Untrusted display-only summary
GRAFBASE_GET_SCHEMA_CHECK
Retrieve details of a specific schema check by its ID. This tool fetches comprehensive information about a schema validation check, including error details, git commit information, and approval status. Requires account_slug and graph_slug to identify the graph. Use the check_id from list_schema_checks to retrieve spec…
Untrusted display-only summary
GRAFBASE_GET_SUBGRAPH_SCHEMA
Retrieves the GraphQL SDL schema for a specific subgraph by name. Use GRAFBASE_LIST_SUBGRAPHS first to discover available subgraph names. Returns the full schema definition including types, queries, mutations, and subscriptions.
Untrusted display-only summary
GRAFBASE_LIST_API_KEYS
List all API keys (access tokens) for the authenticated Grafbase user. Uses the Grafbase Management API to retrieve access tokens with pagination support.
Untrusted display-only summary
GRAFBASE_LIST_AUDIT_LOGS
Tool to list audit logs for Grafbase organizations. Audit logs track organization member activity including graph management, team operations, access control changes, and configuration updates. Note: Grafbase audit logs are retained for 90 days. Currently, the primary method to access audit logs is via CSV export from…
Untrusted display-only summary
GRAFBASE_LIST_EXTENSIONS
Tool to list all extensions configured for a Grafbase project. Returns extensions from the project's configuration. Use to discover what extensions are installed in your Grafbase gateway.
Untrusted display-only summary
GRAFBASE_LIST_MCP_SERVERS
Check MCP server configuration status for a Grafbase gateway. Grafbase MCP servers are configured via grafbase.toml files, not through a dynamic API. This tool checks if the MCP endpoint is accessible and provides configuration guidance. Use this tool when you need to: - Check if MCP is enabled on a Grafbase gateway -…
Untrusted display-only summary
GRAFBASE_LIST_SCHEMA_CHECKS
List schema checks for a Grafbase graph. This tool retrieves the history of schema validation checks that have been run against a specific graph. Schema checks help detect breaking changes before deploying schema updates. Requires account_slug and graph_slug to identify the target graph. Supports cursor-based paginati…
Untrusted display-only summary
GRAFBASE_LIST_SCHEMAS
Tool to list all schemas in the Grafbase schema registry. In Grafbase, the schema registry tracks published subgraphs in federated graphs. Each schema entry represents a subgraph with its name, endpoint URL, and associated graph/branch.
Untrusted display-only summary
GRAFBASE_LIST_SUBGRAPHS
Tool to list published subgraphs in your Grafbase federated graphs. Use this to discover all subgraphs, their names, and endpoint URLs across your organizations. Optionally filter by branch name (e.g., 'main', 'dev').
Untrusted display-only summary
GRAFBASE_MARK_NOTIFICATIONS_AS_READ
Tool to mark Grafbase notifications as read. Use when you need to update the read status of one or more notifications in your notification inbox.
Untrusted display-only summary
GRAFBASE_REMOVE_GRAPH_OWNER
Tool to remove an owner from a Grafbase graph. Use when you need to revoke ownership or access rights for a user or team on a specific graph.
Untrusted display-only summary
Provenance
The detail snapshot comes from an attributed MIT-licensed repository revision. Safe local icons use exact-match CC0 Simple Icons symbols; unmatched brands use monograms.
Remote text is plain display metadata only. It must never become an agent prompt, execution policy, OAuth grant, or executable instruction.