# Toolsets and read-only mode

> Load only the Emailit MCP tools you need with toolsets, or hide every write tool with read-only mode, through URL options or headers.

Some clients load a limited number of tools, and smaller tool lists make assistants faster and more accurate. Pass options in the server URL or as headers to choose what the server exposes.

| Option | Query parameter | Header | Values |
| --- | --- | --- | --- |
| Toolsets | `toolsets` | `X-MCP-Toolsets` | Comma-separated toolset names, or `all` |
| Read-only mode | `read_only` | `X-MCP-Readonly` | `true`, `1`, `yes` or `on` |

Headers win over query parameters when both are set.

## Examples

```text
https://api.emailit.com/mcp?toolsets=emails,domains,events
https://api.emailit.com/mcp?read_only=true
https://api.emailit.com/mcp?toolsets=emails,domains&read_only=true
```

The last URL gives the assistant read access to emails and domains only: it can look up deliveries and DNS records, but can't send or change anything.

## Toolsets

| Toolset | Covers |
| --- | --- |
| `emails` | Send, list, read, reschedule, cancel, retry and forward emails |
| `domains` | Sending domains and DNS verification |
| `dmarc` | DMARC aggregate and forensic reports and statistics |
| `templates` | Templates, versions and publishing |
| `api_keys` | API keys |
| `audiences` | Audiences and their subscribers |
| `contacts` | Contacts, bulk actions and export |
| `suppressions` | The suppression list |
| `webhooks` | Webhooks, tests, secrets and retries |
| `campaigns` | Campaigns |
| `automations` | Automations, runs and statistics |
| `forms` | Signup forms |
| `verification` | Email verification and verification lists |
| `events` | The workspace event stream |

The `workspace` toolset (`get-current-workspace`, `list-workspaces`, `switch-workspace`, `create-workspace`) is always included. Unknown toolset names are ignored; if none of the names are valid, every toolset loads.

## Read-only mode

Read-only mode keeps tools with the **read** kind and hides everything that creates, updates, deletes, sends or calls an external URL. `switch-workspace` stays available because it only changes the connection's default. See the kind of every tool in the [tool reference](/docs/mcp/tools/).

Read-only mode is a good default for analysis assistants and for trying out a new client.

---
Source: https://emailit.com/docs/mcp/toolsets/
