Skip to main content Announcing Tool Gateway MCP: the universal MCPRead the announcement
Live 99 Actions

SpotDraft MCP Server
for AI Agents

Connect your AI agent to StackOne's SpotDraft MCP server and give it 99 MCP tools out of the box. Auth, tool execution, and security all managed.

SpotDraft logo
SpotDraft MCP Server
Built by StackOne StackOne
DrataGPLocalyzeFlipMindtoolsScreenloop

Coverage

99 Agent Actions

Create, read, update, and delete across SpotDraft — and extend your agent's capabilities with custom actions.

Authentication

Agent Tool Authentication

Per-user OAuth in one call. Your SpotDraft MCP server gets session-scoped tokens with zero credentials stored on your infra.

Agent Auth →

Security

Agent Protection

Every SpotDraft tool response scanned for prompt injection in milliseconds — 88.7% accuracy, all running on CPU.

Prompt Injection Defense →

Performance

Max Agent Context. Min Cost.

Free up to 96% of your agent's context window to enhance reasoning and reduce cost, on every SpotDraft call.

Tools Discovery →

What is the SpotDraft MCP Server?

A SpotDraft MCP server lets AI agents read and write SpotDraft data through the Model Context Protocol — Anthropic's open standard for connecting LLMs to external tools. StackOne's SpotDraft MCP server ships with 99 pre-built actions, fully extensible via the Connector Builder — plus managed authentication, prompt injection defense, observability, and agent execution runtime. Connect it from MCP clients like Claude Desktop, Claude Code, Cursor, Goose, and VS Code, or from agent frameworks like OpenAI Agents SDK, LangChain, and Vercel AI SDK.

All SpotDraft MCP Tools

Every action from SpotDraft's API, ready for your agent. Create, read, update, and delete — scoped to exactly what you need.

Obligations

  • Create Obligation

    Create Obligation.

  • List Obligations

    List Obligations.

  • Get Obligation

    Get Obligation.

  • Update Obligation

    Update Obligation.

  • Delete Obligation

    Delete Obligation.

Contracts

  • Create Contract

    Create a new contract from a template with specified data and counterparties.

  • List Contracts

    Retrieve a paginated list of contracts in the workspace.

  • Download Contract

    Download the contract file by composite ID.

Counterpartys

  • Get Counterparty

    Get Counterparty.

  • Update Counterparty

    Update Counterparty.

Counterparty Contacts

  • Create Counterparty Contact

    Create Counterparty Contact.

  • List Counterparty Contacts

    List Counterparty Contacts.

  • Update Counterparty Contact

    Update Counterparty Contact.

  • Delete Counterparty Contact

    Delete Counterparty Contact.

Legal Intakes

  • Create Legal Intake

    Create legal intake.

  • List Legal Intakes

    List legal intakes.

  • Get Legal Intake

    Retrieve a specific legal intake by its ID.

  • Update Legal Intake

    Update legal intake.

  • Delete Legal Intake

    Delete legal intake.

Other (80)

  • Create And Send Adhoc Approvals

    Create and Send adhoc Approvals.

  • Add Comment To Contract Activity Log.

    Add Comment to Contract Activity Log.

  • Create Contract Download Link

    Generate a download link for a contract file.

  • Send Contract To Counterparties

    Send a contract to its counterparties via email.

  • Upload Contract For Review

    Upload an existing contract document for review in SpotDraft.

  • Upload Contract For Signature

    Upload an existing contract document for signing in SpotDraft.

  • Upload Executed Contract

    Upload an already-executed contract document to SpotDraft.

  • Create Contract Relation

    Create a relation between two contracts.

  • Create Review Request

    Create a review request for a contract.

  • Create Counter Party

    Create Counter Party.

  • Create Entity

    Create Entity.

  • Create And Invite User

    Create and Invite User.

  • Get Contract Approvals

    Get Contract Approvals.

  • Get Comments In Contract Activity Log.

    Get Comments in Contract Activity Log.

  • Get Contract Type List

    Get Contract Type List.

  • List Contract Type Entities

    List Contract Type Entities.

  • Get Contract Status

    Get the current status of a contract by its composite ID.

  • Get Contract Content

    Retrieve the text content of a contract.

  • Get Contract By External Metadata

    List contracts associated with a given external metadata ID.

  • Get Contract Related Contracts

    Get contracts related to a specific contract.

  • Get Contract Questionnaire Responses

    Get questionnaire responses for a contract.

  • Get Contract Authorized Users

    Get the list of users authorized to access a contract.

  • List Counterparties

    List Counterparties.

  • Get Organization Entities

    Get Organization Entities.

  • Get Contract Recipients

    Get Contract Recipients.

  • Get Recipient Link

    Get Recipient Link.

  • Get Template List

    Get Template List.

  • Get Template Details

    Get Template Details.

  • Get Template Metadata

    Get Template Metadata.

  • Get User List

    Get User List.

  • Get Webhook Secret

    Get Webhook secret.

  • Update Contract Data

    Update the data fields of an existing contract.

  • Update Contract Business User

    Update the business user assigned to a contract.

  • Update Template

    Update an existing contract template.

  • Remove Webhook

    Remove Webhook.

  • Invite Users & Roles

    Invite Users & Roles.

  • Void Contract

    Void a contract by its composite ID.

  • Mark Contract For Execution

    Mark a contract as ready for execution.

  • Resend Signatory Email

    Resend the signing email to a contract signatory.

  • Preview Contract

    Generate a preview of a contract from a template.

  • Contract Version Uploaded Webhook

    Processes SpotDraft CONTRACT_VERSION_UPLOADED activity events.

  • Contract Approval Completed Webhook

    Processes SpotDraft CONTRACT_APPROVAL_COMPLETED activity events.

  • Contract Approval Requested Webhook

    Processes SpotDraft CONTRACT_APPROVAL_REQUESTED activity events.

  • Contract Created Webhook

    Processes SpotDraft CONTRACT_CREATED activity events.

  • Contract Data Updated Webhook

    Processes SpotDraft CONTRACT_DATA_UPDATED activity events.

  • Contract Deleted Webhook

    Processes SpotDraft CONTRACT_DELETED activity events.

  • Contract Executed Webhook

    Processes SpotDraft CONTRACT_EXECUTED activity events.

  • Contract Mark For Execution Webhook

    Processes SpotDraft CONTRACT_MARK_FOR_EXECUTION activity events.

  • Contract Sent To Counterparty Webhook

    Processes SpotDraft CONTRACT_SENT_TO_COUNTERPARTY activity events.

  • Contract Signature Declined Webhook

    Processes SpotDraft CONTRACT_SIGNATURE_DECLINED activity events.

  • Contract Signature Requested Webhook

    Processes SpotDraft CONTRACT_SIGNATURE_REQUESTED activity events.

  • Contract Signed Webhook

    Processes SpotDraft CONTRACT_SIGNED activity events.

  • Contract Unmark For Execution Webhook

    Processes SpotDraft CONTRACT_UNMARK_FOR_EXECUTION activity events.

  • Postmark Email Event Webhook

    Processes SpotDraft POSTMARK_EMAIL_EVENT activity events.

  • Contract Key Pointer Updation Webhook

    Processes SpotDraft CONTRACT_KEY_POINTER_UPDATION activity events.

  • Contract Key Pointer Creation Webhook

    Processes SpotDraft CONTRACT_KEY_POINTER_CREATION activity events.

  • Signing Email Delivered Webhook

    Processes SpotDraft SIGNING_EMAIL_DELIVERED activity events.

  • Signing Email Opened Webhook

    Processes SpotDraft SIGNING_EMAIL_OPENED activity events.

  • Signing Email Not Delivered Webhook

    Processes SpotDraft SIGNING_EMAIL_NOT_DELIVERED activity events.

  • Signing Email Link Clicked Webhook

    Processes SpotDraft SIGNING_EMAIL_LINK_CLICKED activity events.

  • Redlining Email Delivered Webhook

    Processes SpotDraft REDLINING_EMAIL_DELIVERED activity events.

  • Redlining Email Opened Webhook

    Processes SpotDraft REDLINING_EMAIL_OPENED activity events.

  • Redlining Email Not Delivered Webhook

    Processes SpotDraft REDLINING_EMAIL_NOT_DELIVERED activity events.

  • Redlining Email Link Clicked Webhook

    Processes SpotDraft REDLINING_EMAIL_LINK_CLICKED activity events.

  • Contract Signature Requested Notification Sent Webhook

    Processes SpotDraft CONTRACT_SIGNATURE_REQUESTED_NOTIFICATION_SENT activity events.

  • Counter Party Created Webhook

    Processes SpotDraft COUNTER_PARTY_CREATED activity events.

  • Counter Party Updated Webhook

    Processes SpotDraft COUNTER_PARTY_UPDATED activity events.

  • Counter Party Contact Created Webhook

    Processes SpotDraft COUNTER_PARTY_CONTACT_CREATED activity events.

  • Counter Party Contact Updated Webhook

    Processes SpotDraft COUNTER_PARTY_CONTACT_UPDATED activity events.

  • Counter Party Address Created Webhook

    Processes SpotDraft COUNTER_PARTY_ADDRESS_CREATED activity events.

  • Counter Party Address Updated Webhook

    Processes SpotDraft COUNTER_PARTY_ADDRESS_UPDATED activity events.

  • Contract Activity Log Comment Created Webhook

    Processes SpotDraft CONTRACT_ACTIVITY_LOG_COMMENT_CREATED activity events.

  • Contract Voided Webhook

    Processes SpotDraft CONTRACT_VOIDED activity events.

  • Contract Process Metric Updated Webhook

    Processes SpotDraft CONTRACT_PROCESS_METRIC_UPDATED activity events.

  • Contract External Metadata Created Webhook

    Processes SpotDraft CONTRACT_EXTERNAL_METADATA_CREATED activity events.

  • Contract External Metadata Updated Webhook

    Processes SpotDraft CONTRACT_EXTERNAL_METADATA_UPDATED activity events.

  • Contract Entity Updated Webhook

    Processes SpotDraft CONTRACT_ENTITY_UPDATED activity events.

  • Contract Review Requested Webhook

    Processes SpotDraft CONTRACT_REVIEW_REQUESTED activity events.

  • Contract Review Completed Webhook

    Processes SpotDraft CONTRACT_REVIEW_COMPLETED activity events.

  • Setup Webhook

    Setup Webhook.

Set Up Your SpotDraft MCP Server in Minutes

One endpoint. Any framework. Your agent is talking to SpotDraft in under 10 lines of code.

Agent Frameworks

Claude Desktop
{
  "mcpServers": {
    "stackone": {
      "command": "npx",
      "args": [
        "-y",
        "mcp-remote@latest",
        "https://api.stackone.com/mcp?x-account-id=<account_id>",
        "--header",
        "Authorization: Basic <YOUR_BASE64_TOKEN>"
      ]
    }
  }
}

Check More eSignature MCP Servers

SpotDraft MCP Server FAQ

Does StackOne have a SpotDraft MCP server?
Yes. StackOne offers a hosted SpotDraft MCP server with 99 pre-built actions, and every action is tested and QA'd by StackOne. Connect it to Claude, Cursor, and any other MCP client, or to any agent framework through the AI Action SDK. It ships with managed agent authentication, prompt injection defense, and tool discovery with server-side execution that preserve your agent's context window and keep reasoning performance.
SpotDraft MCP server vs direct API integration — what's the difference?
A SpotDraft MCP server and direct API integration serve different use cases. Direct API integration is for software-to-software — backend code calling SpotDraft. A SpotDraft MCP server is for AI agents — MCP clients like Claude and Cursor, plus framework agents built with OpenAI, LangChain, or Vercel AI — discovering and calling SpotDraft at runtime. StackOne provides both.
How does SpotDraft authentication work for AI agents?
SpotDraft authentication for AI agents works through a StackOne Connect Session. Create one via the dashboard or the SDK — you get an auth link and ready-to-paste config for Claude Desktop, Cursor, and other MCP clients. Your user authenticates their own SpotDraft account; StackOne handles token exchange, storage, and refresh. Credentials never reach the LLM, and each user is isolated via origin_owner_id.
Are SpotDraft MCP tools vulnerable to prompt injection?
Yes — SpotDraft MCP tools can be vulnerable to indirect prompt injection. Any tool that reads user-written content — documents, messages, tickets, records, or free-text fields — is a potential vector. StackOne Defender scans every tool response before it enters the agent's context — regex patterns in ~1ms, then a MiniLM classifier in ~4ms. 88.7% accuracy, CPU-only.
What is the context bloat of a SpotDraft agent and how do I avoid it?
Context bloat happens when SpotDraft tool schemas and API responses eat your SpotDraft agent's memory, preventing it from reasoning effectively. A single SpotDraft query can return a massive JSON response, and connecting multiple tools compounds the problem. Tools Discovery and Code Mode reduce context bloat — loading only relevant tools per query and keeping raw responses out of the agent's context.
Can I limit which actions my SpotDraft agent can access?
Yes — you can limit which actions your SpotDraft agent can access directly from the StackOne dashboard. Toggle actions on or off, or restrict them to specific accounts, with no code changes to your agent. Session tokens can be scoped to exact actions so if one leaks, exposure stays contained.
Can I create custom agent actions for my SpotDraft MCP server?
Yes — you can create custom agent actions for your SpotDraft MCP server using Connector Builder. It's an integration agent your coding assistant (Claude Code, Cursor, or Copilot) can invoke to research SpotDraft's API, generate production-ready connector YAML, test against the live API, and validate before you ship.
When should I NOT use a SpotDraft MCP server?
Skip a SpotDraft MCP server if your integration is purely software-to-software — direct SpotDraft API integration is simpler when no AI agent is involved. For deterministic, compliance-critical operations (financial transactions, regulatory reporting), direct API gives you predictable behavior without agent-driven decision-making. MCP shines when AI agents need to dynamically discover and call SpotDraft actions at runtime.
What AI frameworks and AI clients does the StackOne SpotDraft MCP server support?
The StackOne SpotDraft MCP server supports both. MCP clients (paste-and-go apps): Claude Desktop, Claude Code, Cursor, VS Code, Goose. Agent frameworks (code SDKs you build with): OpenAI Agents SDK, Anthropic, Vercel AI, Google ADK, CrewAI, Pydantic AI, LangChain, LangGraph, Azure AI Foundry.

Put your AI agents to work

All the tools you need to build and scale AI agent integrations, with best-in-class connectivity, execution, and security.