# Toolcape + OneDrive

Toolcape connects a company’s existing AI to its systems through one MCP entry point, with account connections, group and individual permissions, and audit logs. This documentation describes a product prototype; it is not evidence that a live server or account is connected.

## The connection
OneDrive: Work files, meeting briefs and documents.
Connection type pending setup
Provider sign-in (OAuth). Confirm whether the configured connection acts as the user or uses application permissions.
Status: proposed, requires implementation and verification.

## Typical actions
- Read: Work files, meeting briefs and documents.
Planned Microsoft Graph integration. The connection and operation schemas must be implemented and verified before use.

## Setup
1. IT selects and implements the API or MCP connection.
2. Provider sign-in (OAuth). Confirm whether the configured connection acts as the user or uses application permissions.
3. Make the service available in Toolcape. Set Everyone, group and individual rules for the actions actually needed. Adding a service does not grant access.
4. Connect the approved AI client to the actual Toolcape MCP address and sign in. Start with a harmless read-only task and check the audit log.

## Permissions
For personal delegated access, the provider account, approved app scopes and Toolcape rules must all permit the action. Shared accounts and application permissions may have other limits. Toolcape combines Everyone and group grants; a personal exception replaces inherited access for that service. Reading can disclose confidential information. Sharing, sending and deletion need separate consideration.

## Calling an operation
First discover which tools the connected Toolcape server actually exposes. If it offers search → describe → execute, find the relevant operation, inspect its input schema and permissions, then call it with validated inputs. Tool names vary by server; do not invent names, arguments, URLs or successful outcomes. Without connected tools, give setup guidance instead of claiming to perform actions.
The actions above are examples, not verified operation names or complete endpoint schemas. Obtain those from the configured source.

## A useful first question
Find the brief for tomorrow’s customer meeting.

## If it fails
Check the account, expired authorization, app approval, provider scopes and Toolcape permissions. Share only redacted errors with support. Never paste passwords, tokens or client secrets into an AI conversation.