1.2.3
- [FEATURE] Box access for agents - an agent invited directly to a box (the same way you invite a person) can now work inside it as a consumer, scoped to that box's folder: discover its boxes (
list_boxes), read box details and content, read files, mint single-file and ZIP download links, search, create folders and files, rename, move and delete items. Destructive deletes require approval by default and flow through the Agent requests inbox. The management tool that listed a workspace's boxes is renamedlist_workspace_boxes, freeinglist_boxesfor this discovery - [IMPROVEMENT] Agent details "Default tools" reorganised into collapsible Instance / Workspace / Box groups, each with a short description and enabled/approval/disabled counters; box rows are now clickable through to the box, like the workspace rows
- [IMPROVEMENT] Agents find their access more reliably - the MCP server tells a connecting agent it has two separate access surfaces (workspaces and directly-shared boxes) and to check both, and an empty
list_workspacesorlist_boxesresult now points at the other instead of reading as "no access"
Full Changelog: v1.2.2...v1.2.3