Types of tools
Tilde supports five kinds of tools. You can mix them on one agent.Managed tools
Managed tools are integrations that ship with Tilde. The catalog includes Google Workspace, GitHub, Slack, Sentry, PostHog, Firecrawl, Stripe, Tavily, E2B, Modal, AWS, and more. You connect an account once, and Tilde keeps the credential encrypted. It injects the credential only when it runs the selected tool. Some chat providers, such as GitHub, Slack, and WhatsApp, serve chat and tools from one connection.MCP servers
An MCP server connection reaches an existing Streamable HTTP MCP server. The upstream server runs the tools. Tilde holds the OAuth, API key, or bearer credential, and stands between the agent and the server. The catalog includes curated servers such as Notion, Linear, HubSpot, Vercel, Neon, and Salesforce. An administrator can also add any other server by URL. Use this for internal MCP servers too. Your agents then reach them through one audited path, rather than each holding a credential. Tilde discovers a server’s tools when a connection first lists them, and again when you refresh them. Agents only receive the tools that Tilde discovered for their connection.Tilde tool servers
A Tilde tool server is your own tool backend, written with the Tilde SDK. It runs in one of two ways:- Self-hosted. Your process dials out to the gateway with a tool server token, publishes its tools, and answers calls. Like an agent, it exposes no endpoint.
- AWS Lambda. The gateway invokes your function by its ARN, with Tilde’s AWS credentials.
Tool server
tilde.tool_hosts.
Bundled tools
Bundled tools are tools you write in the agent’s own code, with your framework’s native tool type. They run in the agent process, and Tilde never executes them. Tilde still knows about them. You declare them withdefineTools, and tilde deploy registers them with each deployment. The agent’s Tools tab then lists them before the agent first runs, and Tilde records every call.
bundled-tools.ts
Built-in tools
Tilde offers a small set of built-in tools, each only when the agent’s capabilities allow it:agents.list,agents.message, andagents.waitlet an agent find other agents and talk to them.thread.participantsandthread.searchlet an agent read its conversation.tools.search,tools.schemas, andtools.executelet an agent find and call tools on demand. See Tool discovery.tools.resultreturns the result of a background tool call.
Use tools in an agent
Your framework adapter merges every tool the agent can use into the framework’s own tool list. That includes the channel’s tools, such assendMessage, the tools you chose for the agent, and its bundled tools. Each call to a remote tool runs through the gateway.
To use tools without an adapter, read ctx.tools inside run. It holds the agent’s tools with their schemas.
Tool names
A tool from a connection or tool server has a catalog name: the source’s slug, a dot, and the tool name, such asgithub.create_issue. The slug is fixed when you add the source to the agent.
Models accept tool names of up to 64 characters, from a limited character set. The SDK gives each longer or unusual name a stable alias for the model, and maps calls back to the catalog tool.
Tool discovery
Each agent uses one of two discovery modes:- Listed directly. The agent receives every tool’s schema up front. This suits agents with a few dozen tools.
- Found by search. The agent receives
tools.search,tools.schemas, andtools.execute. It searches for tools and loads their schemas on demand, which keeps its context small.
Background tools
Mark a tool as Background when it takes a long time. The agent receives a ticket straight away, and keeps working. The result arrives as new input, or throughtools.result. Tilde aborts a background call that nobody collects after one hour.
Use another agent as a tool
Any registered agent can talk to another. The built-inagents.message tool sends a message, and agents.wait waits for the response. Grant the calling agent the agents.invoke capability for the target agent.
Control tool access
Tool access is deny by default.- Tool selection. An agent gets only the tools switched on for it on its Tools tab. See Manage tools.
- Capabilities. An agent can invoke only the tools named in its
tools.invokecapability. Set it to none, all, or a selected list in the agent’s Capabilities tab. See IAM. - Personal tools. A chat user can connect their own account, for example their own Google account. The agent can use those tools only while it serves that user, and only with the
tools.personalcapability. - Security middleware. In Tilde Enterprise, text an agent sends through a channel tool passes through response guards first.
Sidecar agents currently receive channel tools only. Other tools need a direct or Lambda agent.