Back to integrations

Google Workspace integration for background agents

Enable Google Workspace access for Gmail, Drive, Sheets, Docs, Slides, Calendar, Chat, and People.

Integration details

Connection

  • MCP via Google OAuth
  • MCP via Service account

Agent actions

Gmail

  • Gmail profile access

    Access Gmail profile information for the connected Workspace account.

  • Gmail drafting

    Draft email content in Gmail.

  • Gmail search and read/write

    Search messages and perform approved Gmail read/write mailbox operations.

Google Drive

  • Drive file fetching

    Fetch files from Google Drive.

  • Drive permissions management

    Manage Google Drive file permissions.

  • Drive listing and uploading

    List and upload Google Drive files.

Google Sheets

Agents can use the connected Google Sheets MCP server from a Mistle session.

Google Docs

Agents can use the connected Google Docs MCP server from a Mistle session.

Google Slides

Agents can use the connected Google Slides MCP server from a Mistle session.

Google Calendar

  • Find available times

    Find available times across calendars.

  • Manage events

    Manage Google Calendar events.

Google Chat

  • Find conversations

    Find Google Chat conversations.

  • Search messages

    Search Google Chat messages.

  • Read and send replies

    Read Google Chat threads and send replies.

People API

  • Manage contacts

    Manage user contacts through People API.

  • Access profile information

    Access user profile information through People API.

Credential safety

Credential-less sandboxes

Mistle lets agents access connected services without placing provider credentials inside the sandbox. Approved outbound requests are routed through Mistle's credential proxy, where authentication happens outside the agent runtime.

Credentials stay encrypted in Mistle's control plane and are applied only when a request is authorized for the calling sandbox and organization.

Read the credential-less sandboxes article
Diagram showing sandbox traffic routed through an egress proxy before credential injection.