Skip to content
Official MCP RegistryListed

2ools

Build, version, review, and export websites, web apps, and games from a conversation.

First seen 2 Oct 2026. Evidence as of 2 Oct 2026.

81
Tools
From an anonymous probe
1
Source listings
Each with its own history
0
Recorded changes
Since first seen

Tools

ToolDescriptionBehaviour
act_on_project_os_taskApp-only route for an authenticated person's explicit click in the native Project OS panel. Hidden from the model; every action is revision checked and idempotent, and cancellation requires an explicit confirmation.Destructive
activate_projectRecord the person's one-time choice to use this already-connected 2ools client with one exact saved project. Call only after the person approves in the inline card or explicitly in chat. This does not read or import local files and does not start work or a build.Changes data
add_project_feedbackAdd an attributable review comment to a saved project version. This does not modify source or approve the version.Changes data
add_project_pinAdd an attributable note or safe http(s) link to the shared project workspace.Changes data
advance_project_agent_modeIdempotently re-evaluate and, when safe, queue the next dependency-ready safe-auto plan step on the project's already approved Agent, Engine, and provider. Running, review, blocked, and approval states never double-dispatch.Changes data
answer_project_engineering_decisionAccept or reject one exact native-safe engineering decision at one exact project revision. Requires an explicit confirmation and durable note, enforces project role and high-risk owner policy, rejects revision conflicts, preserves immutable history, and returns an idempotent receipt plus canonical reread. Unknown future response kinds remain in Project OS.Destructive
approve_artifact_versionApprove one pending immutable artifact version and make it current. Repeating the same decision is idempotent.Changes data
approve_versionUse separately delegated review authority to approve one saved version and make it the project's active version. Does not publish, export, or change project permissions.Destructive
attach_project_engine_workspaceOwner-authorized attachment of one saved project to one exact opaque workspace on one exact online 2ools Engine. This grants future project work access to real source on that computer, so show the selected computer/workspace and obtain explicit confirmation. It changes no source file and never falls back to another Engine.Destructive
build_from_conversationCreate a new 2ools project from a structured conversation brief and queue one durable build. Returns project_id and job_id; use get_build to retrieve completion status and the protected preview.Changes data
cancel_agent_runStop one queued or running Agent execution and close its durable run history. Completed, failed, stalled, and already-canceled runs keep their terminal truth.Destructive
cancel_buildCancel one exact queued or running non-Agent 2ools build after named explicit confirmation. Repeating the same cancellation is safe, late Engine results are rejected, completed versions are never deleted, and immutable history remains. Governed Agent execution uses cancel_agent_run.Destructive
checkpoint_work_sessionEnd the current lease with a compact continuation checkpoint, or place work in an explicit waiting or blocked state. Ambiguous external effects always wait for reconciliation and are never auto-retried.Changes data
claim_work_assignmentAtomically claim one open assignment and receive a five-minute renewable lease plus an immutable budget snapshot.Changes data
compare_versionsCompare two saved versions in one project without returning source. Reports lineage, review state, page additions/removals, byte sizes, and SHA-256 identity for each page.Read-only
configure_project_agent_modeTurn the selected project's governed Agent Mode on or off. When enabled, the person chooses one armed project Agent, one exact Engine, and one provider; only reviewed safe-auto steps in the exact approved plan may advance in dependency order. Limits and approval boundaries are never widened.Changes data
continue_projectReturn one project's current Living Plan, next useful move, continuity-readiness gaps, latest evidence, and a compact 2ools-active receipt. Opens a compact status, Continue, and Open Project OS card on MCP Apps hosts; the full Project OS belongs in the host's browser side panel.Read-only
create_public_previewTurn a complete standalone HTML document already created in this chat into a temporary, read-only 2ools preview. Free and authless; expires after 24 hours. This tool does not generate the page—write the HTML first, then call it.Changes data
create_version_share_linkCreate or recover a durable public or code-protected link for one exact saved version. Reusing the idempotency key returns the original result.Changes data
create_work_assignmentCreate a durable assignment with acceptance criteria and hard step, time, and spend ceilings.Changes data
decide_work_assignmentComplete submitted work or reopen it with useful feedback. Requires separately delegated work-review authority.Changes data
dispatch_project_workReserve one exact revision-checked Project OS task for one armed project Agent, then queue it on one exact online Engine and authenticated provider selected by the person. Queued is not working; the task becomes active only after that Engine atomically claims it. Never falls back to another computer, provider, hosted compute, or a parallel task.Changes data
get_account_profileRead the authenticated person's 2ools profile, current account labels, and server-derived effective MCP scopes. Passwords, private credentials, billing instruments, and provider secrets are never returned.Read-only
get_agentRead one Agent's saved Limits, trigger, immutable revision summaries, and redacted append-only run traces. Raw prompts, tool arguments, credentials, and source bytes are not returned.Read-only
get_artifactRead one artifact's immutable version history, provenance, attribution, digests, and review states without returning stored bytes.Read-only
get_buildGet one build's current status, progress, errors, completed version IDs, and protected preview URLs. Does not return generated source code.Read-only
get_engine_dispatchRead the authoritative state of one exact Engine dispatch. Queued means accepted but not started; running appears only after the selected Engine atomically claims the lease. Returns claim, heartbeat, failure, and terminal state without client inference.Read-only
get_projectGet a 2ools project's brief, selected pages, active version, and compact version history. Does not return generated source code.Read-only
get_project_accessRead the authenticated person's role plus the canonical project owner, members, and pending invitations. Non-managers can read active members but never receive pending-invite metadata.Read-only
get_project_activityRead the attributable project timeline across human work, external MCP agents, builds, versions, feedback, and workspace pins. Actor kind is explicit; an external agent is never presented as the human account that authorized it.Read-only
get_project_agent_modeRead the project-level autonomous coordination state derived from the canonical Living Plan, governed Agent, and exact Engine destination. Returns progress, current work, next eligible safe step, and the reason the project is running or needs the person.Read-only
get_project_contextRead one source-free operating packet: active version metadata, the latest explicitly selected observed project input, review attention, artifact index, work queue, and current activity cursor. Imported input is immutable evidence, not an AI proposal or live filesystem sync; private 2ools skills, prompts, routing, governance text, and generated version source are not returned.Read-only
get_project_disciplineReturn derived direction, trade-off, evidence, and continuity status with active decisions, eval evidence, verifier definitions, and explicit permission boundaries. Status is computed from authoritative Project OS records, never editable checkboxes.Read-only
get_project_engine_workspaceRead the privacy-safe Engine workspace attached to one project. Returns only opaque Engine/workspace identity, safe display metadata, live readiness, and a revision. Never returns source, paths, repository URLs, SSH hosts, tokens, or secrets.Read-only
get_project_intelligenceReturn the versioned frontier-product research dossier, six parallel lane states, evidence ledger, saturation audits, falsification, concepts, ranked outputs, integrity summary, connector visibility, and a deterministic operating brief. Missing premium access is reported as a gap, never invented.Read-only
get_project_missionReturn a bounded canonical Project Mission view, active Goal Contract, server-derived health, role capabilities, or a paginated goals, templates, scope-change, or history slice.Read-only
get_project_work_dispatchRead the authoritative queued, claimed, running, approval-paused, or terminal state of one exact governed Project OS task dispatch. Returns bounded progress and lease evidence without prompts, credentials, source, paths, or private model transcripts.Read-only
get_task_quality_gateReturn the current task-bound Quality Gate policy, freshness, deterministic check receipt, and attached findings. A pass never replaces required human visual or approval review.Read-only
get_version_share_linkRead the durable sharing state and current URL for one exact saved version. Disabled shares return no URL.Read-only
get_work_handoffReturn the current immutable context-handoff receipt, exact task lineage, and honestly labeled worker-reported or 2ools-forecast context signal.Read-only
heartbeat_work_sessionRenew the authenticated worker's active lease without widening its immutable step, time, or spend ceilings.Changes data
invite_project_memberInvite an existing 2ools username or an email address to one owned project as a collaborator or viewer. New-account claim tokens are emailed by 2ools and are never returned through MCP.Changes data
list_approval_requestsList exact saved versions waiting for a separately delegated reviewer. Returns project/version identity and attribution, never generated source.Read-only
list_artifact_approval_requestsList exact artifact versions awaiting or carrying a human review decision. Requires separately delegated artifact review authority.Read-only
list_artifactsList durable project artifacts and each latest immutable version without returning stored bytes.Read-only
list_build_systemsList creative systems created by the authenticated account and compatible with an optional output target. Built-in 2ools skills, routing, prompts, and operating systems are private and are not returned.Read-only
list_connected_enginesList privacy-minimized connected 2ools Engines for exact native dispatch. Returns opaque Engine identity, a redacted machine label, online state, authenticated provider CLIs, supported protocols, privacy-safe workspace handles, and the last observed timestamp. Never returns tokens, paths, repository URLs, SSH hosts, secrets, or raw device labels.Read-only
list_project_agentsList the authorizing account's built-in Agents assigned to one readable project. This reveals status and summary, not full Limits or run traces.Read-only
list_project_engineering_decisionsList native-safe engineering decisions for one exact project, including the canonical project revision, category, risk, question, rationale, tradeoffs, response contract, constraints, and current state. Never returns secrets or internal prompts; unknown future response kinds remain in Project OS.Read-only
list_project_feedbackRead page-anchored review feedback for versions in a project, with explicit human or external-agent attribution.Read-only
list_project_pinsRead shared workspace notes and http(s) links, with explicit attribution.Read-only
list_projectsOpen the native Project OS entry point and list recent 2ools projects the authenticated account can access. The app automatically continues the only saved project or shows an inline chooser when several projects are available. Returns compact metadata without generated source.Read-only
list_work_assignmentsList durable project work contracts, bounded attempts, leases, budgets, and result references.Read-only
manage_project_disciplinePropose a project trade-off, version an eval case or verifier definition, or attach an eval/verifier receipt to exact work. Agents may propose decisions but cannot accept their own proposals; verifier definitions describe external evidence and never execute arbitrary code on 2ools.Changes data
manage_work_watchdogPause, park, resume, or reprioritize one durable task, or deliberately configure the project Watchdog. This never answers for the user, approves a risky action, deploys, spends, sends externally, deletes data, or widens authority.Changes data
prepare_artifact_downloadCreate a five-minute download URL for one immutable artifact version. Stored bytes never enter MCP model output.Read-only
prepare_artifact_uploadCreate a five-minute PUT URL for exact bytes. External-agent output always enters pending review and never replaces the current artifact version before approval.Changes data
prepare_version_exportCreate a five-minute download URL for an exact saved version. Source is delivered by the download route, never embedded in MCP model output.Read-only
prepare_work_handoffCheckpoint one owned session into an immutable, exactly-once successor envelope. Estimated signals are labeled as estimates; questions and possibly committed effects stay paused for a person.Changes data
refine_projectCreate one protected child version from a saved base version and concrete review feedback. Preserves the base source as currentCode, consumes one persisted project iteration, and returns an asynchronous job_id.Changes data
refresh_project_cockpitRefresh the bounded project state shown inside an already-open 2ools MCP App. This app-only read does not start work, import files, or change the project.Read-only
register_existing_projectCreate one durable Project OS record for a local or external project that list_projects did not match. When the canonical project ID is already known, pass existing_project_id and that exact record is reused. Otherwise an exact normalized name match is reused instead of duplicated, even with a new idempotency key. Call only after the person approves the proposed name, goal, current state, decisions, and next step. This never reads or uploads local files and never starts a build.Changes data
reject_artifact_versionReject one pending immutable artifact version with useful feedback. Repeating the same decision is idempotent.Changes data
reject_versionUse separately delegated review authority to reject one saved version. If it is active, restores its saved parent as active; the rejected version remains in immutable history.Destructive
remove_project_memberRemove one exact member's project access after explicit confirmation. Their account and authored history stay; active project builds are canceled and armed project agents are paused.Destructive
remove_project_pinRemove one shared workspace pin. The operation is idempotent.Destructive
render_project_previewRender an interactive, read-only card for one saved 2ools version. Use after get_build or get_project when the user wants to see, open, or share the result. Returns protected preview and access-checked workspace links without source code.Read-only
resolve_project_feedbackOwner-only review decision that resolves or reopens one saved feedback item.Destructive
review_project_missionRestore an immutable Mission or Goal revision, decide a proposed scope change, or submit proof-based goal completion review. Completion and high-risk authority remain server-gated.Changes data
revoke_project_inviteRevoke one exact pending project invitation after explicit confirmation. The person can no longer accept that invitation; project history remains auditable.Destructive
revoke_version_share_linkDisable every existing public or code-protected URL for one exact saved version. Re-publishing a protected link rotates its code.Destructive
run_project_agentQueue real execution for a project-linked Agent the person already test-ran and armed. The immutable saved Limits, project access, account fuse, and online Engine requirement are enforced server-side before a job exists.Changes data
run_task_quality_gateStart checks against exact task/artifact/environment fingerprints, or submit every configured check with same-project evidence and explicit findings. Missing routes, stale proof, failed checks, and open findings cannot become a false pass.Changes data
start_project_on_engineCreate one new 2ools project and queue its first build on one exact connected Engine and provider selected by the person. Fails before project creation or queueing when that Engine is offline, busy, missing the provider, or lacks the protocol. Never falls back to hosted, server, Studio, or another computer.Changes data
submit_work_sessionEnd the authenticated worker's lease and submit typed result references for a separate review decision.Changes data
update_account_profileUpdate only the explicitly supplied profile fields for the authenticated person. This cannot change email, password, MFA, billing, entitlements, roles, or account-deletion state.Changes data
update_living_planAdd, edit, move, or reorder open Living Plan items from the current conversation, then return the refreshed inline plan and timeline panel. This cannot mark returned work complete; completion remains a separate evidence-backed review decision.Changes data
update_project_intelligenceInitialize or append one immutable, validated dossier revision. The complete snapshot must cite material claims, preserve unknowns, finish or explicitly block all six lanes before synthesis, include a reproducible saturation audit, and pass falsification/output gates. Revision conflicts require a reread; no source retrieval is fabricated by this tool.Changes data
update_project_member_roleChange one exact member to collaborator or viewer, or transfer ownership. Requires explicit confirmation because demotion cancels that member's active builds and pauses armed project agents, while ownership transfer changes the current owner's authority.Destructive
update_project_missionCreate or revise Mission and Goal contracts, explicitly transition or reorder goals, or propose a scope change. Server role, revision, conflict, and safety policy remain authoritative.Changes data
wait_for_project_activityWait up to 20 seconds for attributable project events newer than a head_cursor or prior next_cursor. Returns events oldest-first so an outside agent can process them in order. If resync_required is true, paginate get_project_activity instead of advancing the cursor.Read-only

Change history

No changes since the first observation. The first snapshot is the baseline.

Source listings
SourceListingFirst seenLast seenVersions
Official MCP Registryapp.2ools/mcp2 Oct 20262 Oct 20261