Box
by Box
Search Box content, ask Box AI about your documents, and create files and folders from your AI assistant. Anthropic lists 20 tools; Box documents 54. OAuth sign-in, admin enablement required.
Verified connector
Listed by Anthropic as a partner connector in its Connectors Directory.
Connection checked by Agentman on .
Anthropic states this reflects the level of review a connector received, not a security audit.
Connect Box via MCP
https://mcp.box.comWorks in any MCP-compatible client. In Agentman Studio it is one click — no config file to edit.
Use in Agentman
Connect Box once and your agents call these tools on their own — on a schedule, in a workflow, with nobody at the keyboard.
Open in Agentman StudioBox Tools & Capabilities (20)
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
Frequently asked questions
No. Anthropic's directory labels the connector's permissions as Read, but the same listing includes upload_file, upload_file_version and create_folder, which all write. Box's own documentation goes further: it groups 25 of its 54 documented tools under headings titled Write, and its setup guide names root_readwrite as a required OAuth scope.
Usually yes. Box meters chargeable AI features in AI Units, and states that every question-answering and text-generation task routed through the Box MCP server consumes them, because MCP counts as API access. Enterprise plans include 1,000 units monthly, Enterprise Plus 2,000 and Enterprise Advanced 20,000. Business and Business Plus customers must buy units separately.
Your plan probably lacks the Hubs API. Box lists the Hubs API from the Enterprise tier upward and Box AI for Hubs from Enterprise Plus upward, so list_hubs, get_hub_details, get_hub_items and ai_qa_hub are unavailable on Business plans. Hubs must also be switched on for your enterprise in the Admin Console under Enterprise Settings.
Yes, through upload_file_version, which adds a new version of an existing file. Box keeps prior versions and documents endpoints to list, promote and restore them, so the change is normally recoverable. That safety net is itself plan-gated: Box states file versions are only tracked for premium accounts. No tool in the connector deletes anything.
No. Box states its API cannot bypass content permissions, the waterfall folder structure, or admin-only requirements, and that MCP actions respect existing folder permissions, collaboration settings, Box Shield policies and audit logging. The connector acts as the signed-in user, so it reaches only content that user already owns or collaborates on.
A third-party model that Box routes to on your behalf. Box AI runs on models from OpenAI, Google, Anthropic via AWS and IBM, and Box publishes a model card for each. Core models are available to all customers by default. Customer-enabled models require admin activation, and Box states that choosing one means data may be processed by additional subprocessors.
An admin must switch it on first. In the Box Admin Console, open Integrations, filter by the MCP category or search for the server, and set its availability. For a custom client the admin also creates Integration Credentials, supplying a client ID, client secret, redirect URI and access scopes. Individual users cannot self-enable the connector.
Sources
- Box MCP server overview — https://developer.box.com/guides/box-mcp (fetched 2026-08-18, via
.md) · retrieved 2026-08-18 - Box MCP available tools — https://developer.box.com/guides/box-mcp/tools (fetched 2026-08-18, via
.md) · retrieved 2026-08-18 - Box MCP setup guide — https://developer.box.com/guides/box-mcp/setup (fetched 2026-08-18, via
.md) · retrieved 2026-08-18 - About Box MCP server — https://docs.box.com/en/box-mcp/about-box-mcp-server (fetched 2026-08-18) · retrieved 2026-08-18
- Claude setup for Box MCP — https://docs.box.com/en/box-mcp/configuring-box-mcp-server/claude (fetched 2026-08-18) · retrieved 2026-08-18
- Understanding AI Units in Box — https://docs.box.com/en/box-ai/understanding-ai-units-in-box (fetched 2026-08-18) · retrieved 2026-08-18
- Box AI features in business plans — https://docs.box.com/en/box-ai/box-ai-features-in-business-plans (fetched 2026-08-18) · retrieved 2026-08-18
- Supported AI models — https://developer.box.com/guides/box-ai/ai-models/index (fetched 2026-08-18) · retrieved 2026-08-18
- Box AI request handling and limits — https://developer.box.com/guides/box-ai/index (fetched 2026-08-18) · retrieved 2026-08-18
- Box AI prerequisites — https://developer.box.com/guides/box-ai/ai-tutorials/prerequisites (fetched 2026-08-18) · retrieved 2026-08-18
- OAuth scopes reference — https://developer.box.com/guides/api-calls/permissions-and-errors/scopes (fetched 2026-08-18) · retrieved 2026-08-18
- Box API security guide — https://developer.box.com/guides/security/index (fetched 2026-08-18) · retrieved 2026-08-18
- Box Hubs API overview — https://developer.box.com/guides/hubs-api/index (fetched 2026-08-18) · retrieved 2026-08-18
- Configuring Box Hubs — https://docs.box.com/en/box-hubs/box-hubs-for-admins/configuring-box-hubs (fetched 2026-08-18) · retrieved 2026-08-18
- List all file versions — https://developer.box.com/reference/get-files-id-versions (fetched 2026-08-18) · retrieved 2026-08-18
- Promote file version — https://developer.box.com/reference/post-files-id-versions-current (fetched 2026-08-18) · retrieved 2026-08-18
- Trash and two-stage deletion — https://developer.box.com/guides/trash/index (fetched 2026-08-18) · retrieved 2026-08-18
- Box subprocessor list — https://www.box.com/legal/subprocessors (referenced by Box's models page; not fetched)
- Live OAuth probe of
https://mcp.box.com— 401 withwww-authenticatenamingresource_metadata, 2026-08-18 · retrieved 2026-08-18 - RFC 9728 resource descriptor — https://mcp.box.com/.well-known/oauth-protected-resource (fetched 2026-08-18) · retrieved 2026-08-18
- RFC 8414 authorization server metadata — https://api.box.com/.well-known/oauth-authorization-server (fetched 2026-08-18) · retrieved 2026-08-18
- Anthropic connector directory — https://claude.ai/directory/a5380429-c773-4180-b642-301418240c8c (snapshot 2026-08-16) · retrieved 2026-08-16
Server Info
- Category
- Data & Research
- Developer
- Box
- Tools
- 20
- Domain
- mcp.box.com
Using Claude Desktop or another MCP client? Setup docs — the connection URL above works anywhere.
Similar MCP Servers for Data & Research
Adobe Customer Journey Analytics
by Adobe Customer Journey Analytics
Related Resources
Ready to connect Box?
Connect Box once and your agents call these tools on their own — on a schedule, in a workflow, with nobody at the keyboard.