The WhatsApp workspace built for agents.
Claude and ChatGPT connect with one URL and see only what you allow. Each message an agent sends carries its name. Each request lands in a 90-day log, refusals included.
Endpoint https://app.mobileb.net/mcp · 42 tools · included with every account while MobileB is in beta.
The app asks for read or send. We ask you the rest.
OAuth can only carry two words, and two words are too blunt for someone's WhatsApp. So before anything connects, MobileB asks you four questions. The connecting app neither sees nor influences the answers, and revoking takes effect on the agent's next call.
- Which numbersAll of them, or a chosen subset.
- Which conversationsEverything, or only the categories you tag. Business is the default. An untagged conversation cannot be seen, searched or discovered by a business-scoped grant.
- What it can doRead only, or read and send.
- For how long30, 90 or 365 days, or until you revoke it.
Everything a person does in the app, typed for a machine.
24 read, 16 act, 2 share. Every tool has a typed input and output schema, and the list an agent sees is exactly the list its grant allows. 240 requests a minute per address, plus a per-minute budget on each token.
Orientation
List WhatsApp numbersList conversationsList contactsHealth of a linked numberWhat is waiting
Reading and search
Read a conversationSearch messagesSearchFetch
Collections
List photos and videosList documentsThe number’s own WhatsApp profileStarred messagesList messages waiting to send
Seeing and hearing
Listen to a videoCut a section out of a videoTranscribe a voice note or videoListen to a voice noteLook at a videoLook at a photo
Security awareness
Which conversations are encryptedCheck a conversation’s encryption
Share visibility
Outgoing conversation sharesShare and agent activity
Sending
Send a photo, video, document or voice noteSend a messageSend a locationSend a contact card
Message actions
Star or unstar a messageReact to a messageForward a messageEdit a sent messageDelete a messageMark a conversation read
Organizing and time
Rename a contact privatelyPin, mute or archive a conversationSend a message laterCancel a queued message
Account
Re-import historyChange the number’s public profile
Sharing
Share one conversation with someoneEnd someone’s access
Agents that can look and listen.
A generic WhatsApp API hands an agent a media URL. MobileB hands it the picture, the audio and the frames: a photo as an image, a voice note as sound, a video as stills sampled where you ask, its soundtrack alone, or a clip cut to the second. It can also transcribe speech on MobileB's own hardware, subject to the account's daily minutes.
Media tools carry their own per-minute budgets so a curious agent cannot saturate the box: 12 media calls, 6 video calls per token per minute.
- view_imageThe pixels, not a link.
- play_audioA voice note as audio.
- video_framesStills between two timestamps, at the rate you choose, up to 48.
- video_audio, video_clipThe soundtrack alone, or a re-encoded section, cut exactly.
- transcribeSpeech as text, processed on our own hardware.

Every request, readable by you, for 90 days.
Every request an agent makes is recorded: the tool, the time, the outcome, what it searched for, which messages it touched and how long it took. A summary, a chart by hour or by day, filters, and the raw rows. Kept 90 days, then deleted.
References, never copies. The log points at messages; a message you delete disappears from the log too. It can never become a second copy of your inbox.
Attribution on every message. WhatsApp cannot say "an assistant sent this", so MobileB does, in the app, in the trail, and in transcripts, which read me (via sales bot).
Refusals are the limit working. Turned-away requests are counted and shown as such, not hidden in a log nobody reads.
What an agent is told no to.
| The request | The answer |
|---|---|
| A read-only token asked to send | This token is read-only. Ask the account owner for a token that can act. |
| A message id from another conversation | No such message in that conversation. |
| An account-wide change on a scoped grant | A conversation-scoped token cannot change an entire WhatsApp account. |
| A conversation under advanced security | This conversation requires advanced-security envelopes. Agents cannot read or create those envelopes, so nothing was sent. |
| Text shaped to look encrypted | Refused rather than sent, so a message never arrives claiming to be something it is not. |
| A token over its per-minute budget | This token has reached its standard work budget. Try again in a minute. |
What an agent can never do
- Set a tag. Tags scope grants, so an agent that could tag could widen its own reach.
- Read conversations other people shared to you. A grant to a person is not a grant to their software.
- Accept, leave or upgrade a share, share with write access, or share for more than 30 days. Creating a share at all is a separate switch that starts off every time the consent screen loads, appears only if the app asked for it, and needs send permission as well.
- Keep working after you revoke. The next call is refused.
One URL. Six ways in.
OAuth 2.1 with PKCE, dynamic registration and one-hour access tokens for connectors. A personal token, shown once, for headless agents.
Claude
Paste one URL under Connectors
Claude Code
One command, then consent in the browser
Claude API
mcp_servers with a personal token
ChatGPT
Connector with OAuth, deep research included
OpenAI Responses
An mcp tool with a personal token
Any MCP client
Streamable HTTP with OAuth discovery or a bearer token
Agent access is included with every account while MobileB is in beta. On the plans that follow, Pro agents read (3 tokens) and Enterprise agents may also send (10 tokens). The plan table.