The surface
Discovery, authoring, execution and result reading — the full lifecycle. 25 of them read; 16 can write, and those are the ones the audit log flags with mcp.tool.write.
Pipelines — author, run, inspect
7 tools — every name, its scope and whether it writes is listed on
the tools page.
Templates — the SQL an agent writes
7 tools — every name, its scope and whether it writes is listed on
the tools page.
Datasources — what the agent may see
8 tools — every name, its scope and whether it writes is listed on
the tools page.
dp-lake — tables over your bucket
3 tools — every name, its scope and whether it writes is listed on
the tools page.
The SQL probe
1 tools — every name, its scope and whether it writes is listed on
the tools page.
Executions — results and cancellation
4 tools — every name, its scope and whether it writes is listed on
the tools page.
Published endpoints
4 tools — every name, its scope and whether it writes is listed on
the tools page.
Calculators
2 tools — every name, its scope and whether it writes is listed on
the tools page.
docs
2 tools — every name, its scope and whether it writes is listed on
the tools page.
semantics
3 tools — every name, its scope and whether it writes is listed on
the tools page.
All of them over one endpoint: POST {host}/mcp, Streamable HTTP, stateless by default.
Read the MCP server specification →