monday.com MCP server icon

monday.com

by monday.com

HIPAA CompliantSOC2 ReadyISO 27001 Ready
Sales & CRM33 tools

Create items, build boards, run automations and notify colleagues from an AI assistant. OAuth sign-in, 33 tools in Anthropic's snapshot against 64 in monday's own reference, and a documented interactive widget surface.

Verified connector

Listed by Anthropic as a partner connector in its Connectors Directory.

Connection checked by Agentman on .

Anthropic states this reflects the level of review a connector received, not a security audit.

Connect monday.com via MCP

https://mcp.monday.com/mcp

Works in any MCP-compatible client. In Agentman Studio it is one click — no config file to edit.

Use in Agentman

Connect monday.com once and your agents call these tools on their own — on a schedule, in a workflow, with nobody at the keyboard.

Open in Agentman Studio

monday.com Tools & Capabilities (33)

create_items_and_tasks
create_workflows_and_approvals
create_dashboards_and_portfolios
create_notifications_and_updates
create_forms_and_intake
get_board_and_project_status_insights
update_items_owners_and_status
create_boards_and_projects
get_board_items
list_users_and_teams
get_updates
create_update
list_automations
move_object
create_workspace
create_folder
list_workspaces
get_user_context
search
create-sequence
get-timeline-items
create-timeline-item
manage_agent
get_monday_knowledge
get_assets
create_doc
update_doc
read_docs
all_api_read
all_api_write
search_meetings_content
send_feedback
vibe_create

Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.

Limits

  • The connector can send messages to real colleagues, immediately. create_notification delivers to a person's bell icon and optionally their email, with no documented confirmation step. Your MCP client is the only place an approval gate can exist.
  • all_api_read and all_api_write expose the whole GraphQL API. No reassurance derived from the other tool names survives these two. monday.com's reference calls the equivalent tool "Execute any GraphQL query or mutation".
  • The published tool counts disagree: 33, 43 and 64. Each list omits destructive verbs the others contain — manage_automations, which deletes automations, appears only in the 64-tool reference. The number of tools in your client depends on which build you reach.
  • Daily API calls are metered and MCP calls count. monday.com states each MCP tool call executes as a GraphQL request against the daily limit: 1,000 on Free, Standard and Basic, 10,000 on Pro, 25,000 on Enterprise, resetting at midnight UTC. An agent looping over a large board can spend a Free account's entire daily budget in one session.
  • Complexity is a second, independent budget. Individual queries are capped at 5,000,000 complexity points, and personal tokens get a combined 10M points per minute — 1M on trial, NGO and free accounts — on a sliding 60-second window. Exceeding it returns ComplexityException. Rate-limited requests still cost 0.1 of a daily call each, so a retry storm is not free.
  • Per-minute request limits apply on top: 5,000 queries a minute on Enterprise, 2,500 on Pro, 1,000 on other tiers.
  • Viewers cannot use it, and guests usually cannot either. MCP is for admins and members on all tiers. Guest access exists only on Enterprise and is off by default.
  • An admin can turn it off account-wide, and you cannot override that. monday.com states account level permissions take precedence and the connection will simply fail. Admins can also scope MCP to named workspaces instead of all of them.
  • No self-service audit log. monday.com states that self-service export of detailed MCP or API audit logs is not currently available, while confirming it maintains internal logging.
  • Prompt injection is your problem, not monday's. monday.com's security page assigns prompt injection and content-manipulation risk to the AI client or agent layer, stating those are not addressed within the MCP server itself.
  • Some tools run against a preview schema. monday.com notes that newer workflow, automation, agent and asset-upload tools run against its dev preview API and are subject to change.
  • We did not read the tools and never called one. Our only contact was an anonymous handshake that returned HTTP 401 and two unauthenticated metadata fetches. Every statement about what a tool does comes from monday.com's documentation or Anthropic's directory listing, each dated below.

Frequently asked questions

Yes. monday.com's getting-started article states MCP is available on all monday.com plans at no additional cost, and that MCP comes preinstalled on every account with no marketplace installation step. The gate is role rather than plan: admins and members get MCP on all tiers, viewers get no access, and guests are Enterprise-only and off by default.

Standard API limits apply, and they are real numbers. monday.com's rate-limit documentation states that MCP tool calls execute as GraphQL requests and count toward the daily call limit: 1,000 calls a day on Free, Standard and Basic, 10,000 on Pro and 25,000 on Enterprise, resetting at midnight UTC. Complexity and per-minute limits apply on top.

Each user individually authorizes MCP via OAuth. monday.com states MCP only has access to the data that you, as an individual user, can access, and that the specific permissions depend on the OAuth scopes you grant during setup. Its access article adds that there is no service account or shared key, so every connection is tied to one person's scope.

Only if the person authorizing the connection has access to those boards. monday.com's access-management article states plainly that MCP never escalates existing permissions, and that board permissions, item-level permissions and private boards are all respected. An agent acting on someone's behalf can never see more than that person sees in the interface.

No. monday.com states that account-level permissions take precedence, and that even if someone attempts to connect from an AI agent the connection will fail if MCP is disabled at the admin level. Admins control this under AI governance, and can also restrict MCP to named workspaces rather than all of them.

monday.com states MCP uses industry-standard OAuth for authentication and TLS encryption for all data transfers, and that it respects your monday.com permissions. The vendor adds its own caveat: because MCP can perform actions on your behalf, it recommends reviewing AI-suggested changes before confirming actions that modify your workspace.

Your Claude plan is the likely cause. monday.com's setup guide states the connector is available to users on Claude's Pro, Max, Team and Enterprise plans across web, desktop and mobile. On Team and Enterprise a Primary Owner or Owner must first enable the connector at the organization level before individual users can connect it.

An admin has probably disabled AI Connectors. monday.com's troubleshooting tells you to ask your admin to check Admin then Permissions then AI Connectors. If MCP is enabled but a workspace is missing, check the workspace scope under Admin then Apps then monday MCP, where an admin can limit MCP to specific workspaces.

Server Info

Category
Sales & CRM
Developer
monday.com
Tools
33
Domain
mcp.monday.com

Using Claude Desktop or another MCP client? Setup docs — the connection URL above works anywhere.

Ready to connect monday.com?

Connect monday.com once and your agents call these tools on their own — on a schedule, in a workflow, with nobody at the keyboard.