What it is

The GTM Brigade connector is a remote Model Context Protocol (MCP) server. One server, the same tools, whichever assistant you connect it to. Once connected, your assistant can answer questions like “how did my posts do this week?” and carry out work like “draft a post about our pricing change and schedule it for Tuesday” or “add these five profiles to the watchlist.”

It exposes 96 tools across your whole GTM Brigade account: 40 read your data and 56 change something. Thirteen of them reach outside GTM Brigade — they publish on LinkedIn under your own name, send an email, write into your CRM, fetch a web page, or check a key against a third party. Every tool that is not read-only is flagged as such, so your assistant asks you before it runs.

For worked examples of what people actually ask it, see what you can do with the connector: real sentences, the tools each one fires, and which of them change your account.

Setting the account up, from the chat

This used to be the part you had to do in a browser. It is not any more. A brand-new user can create the workspace itself and work through setup in the same conversation:

  • Create the workspace. The only write in the connector that runs when you belong to no workspace at all. It previews the name and the URL slug first and writes nothing until you confirm.
  • Ask what is still unset. One read walks LinkedIn connection, company context, ICPs, leads and lists, watchlist, knowledge base, personal style, teammates, CRM, Company Page, targets, feed keywords and onboarding state, and hands back a link per gap.
  • Fill the company context. Four free-text fields go into every AI prompt GTM Brigade runs. While they are empty, every generated post and comment is written with no idea what your company does.
  • Seed the knowledge base from URLs. Hand it your own site, a pricing page, a case study. Our server fetches each page, extracts the readable article and queues it for indexing.
  • Get ICPs proposed from your own website and commit the ones you pick — the same step the signup wizard runs.
  • Find real people to engage with. Pull the reactors and commenters off a post or an account, or have candidates proposed from your own LinkedIn activity.
  • Connect an outreach provider with an API key you paste, and write your personal style — including drafting it from the posts and comments of yours we already hold, which is the single highest-value field to fill.
  • Mark onboarding complete, so the app stops pulling you back into the signup wizard. It reports what is still unset before it agrees you are done.

What still needs a browser

Setup is not entirely chat-shaped, and it is worth knowing which steps will send you to a window before you start:

  • Signing up for GTM Brigade, and the connector's own OAuth consent screen. You need an account before there is anything to connect.
  • Connecting your personal LinkedIn account. Nothing publishes or gets measured until that is done, and it is an OAuth handshake in a browser.
  • Connecting a CRM or a Company Page, and Slack or Teams notifications, which additionally need per-member consent. These are all OAuth handshakes. The connector can tell you whether each one is live; it cannot perform the handshake.
  • Stripe checkout and plan changes. Billing stays readable only.
  • Uploading a file. Web pages by URL and text notes go into the knowledge base from chat; a PDF or a deck off your disk is still an upload in the app.

Add it to Claude

  1. In Claude, open Settings → Connectors → Add custom connector.
  2. Enter the server URL: https://api.gtmbrigade.com/mcp
  3. Claude opens a browser window to sign in. Log in with your GTM Brigade account, review the permissions listed on the consent screen, and click Allow.
  4. That's it — the tools appear in Claude.

Add it to ChatGPT

  1. In ChatGPT, open Settings → Connectors and add a custom connector (this needs developer mode on a plan that allows custom connectors).
  2. Enter the same server URL: https://api.gtmbrigade.com/mcp
  3. Sign in on the GTM Brigade consent screen and click Allow, exactly as above.

The same URL and the same account work in both. ChatGPT's research surface looks for two specifically-named tools, search and fetch, and the connector serves them, so your leads, posts, drafts and knowledge base are citable there. Note that ChatGPT's deep-research mode is read-only by design: it will use the reading tools and will not run the ones that write.

Add it to Gemini or Perplexity

Both connect to the same URL, with one difference: they may ask you for a client ID and client secret instead of registering themselves. Gemini Enterprise always does (its admin console has no automatic registration), and Perplexity falls back to it. Ask us and we will issue a pair for your organization.

  • Gemini Enterprise: add a custom MCP server in the admin console, enter https://api.gtmbrigade.com/mcp and the credentials we issue. If the console shows a PKCE checkbox, tick it: this server requires PKCE and the connection will not complete without it.
  • Perplexity: add a custom connector under your account or organization settings (Pro, Max, Business or Enterprise). Enter https://api.gtmbrigade.com/mcp, and the credentials if it asks for them.

Neither Google nor Perplexity runs a connector directory, so there is nothing to browse for. You add the URL yourself.

Authorization uses OAuth 2.1 with PKCE in every client. GTM Brigade never sees your Claude, ChatGPT, Gemini or Perplexity account, and none of them ever sees your GTM Brigade password. You sign in on our own consent page.

What it can read

40 read-only tools, in thirteen groups:

  • Setup and integrations · 3
    The workspaces you belong to, a workspace’s setup status with what is still unset and a link per gap, and what is connected: your outreach providers, your organization’s CRM, and Slack and Teams notifications.
  • Your analytics and your team’s · 6
    Your posts, comments, reactions, impressions, reach, followers, activity score and leaderboard rank — plus the team leaderboard, org-wide overview and Company Page metrics for owners.
  • Leads and lead lists · 4
    Search your lead database, open a single lead with its enrichment and engagement history, list your lead lists, and follow the progress of enrichment running in the background.
  • Watchlist, feed and comment suggestions · 5
    The profiles your team monitors with their activity stats, the posts they published, a single feed post in full, and the AI comment suggestions waiting on them.
  • Content and drafts · 3
    Your posts and drafts with their status and performance, and the personal writing style GTM Brigade learned from you.
  • Knowledge base · 2
    List your organization’s knowledge-base assets, and search them semantically — your private personal assets stay private to you.
  • ICPs · 2
    Your ideal-customer profiles, their signals, and how many leads match each one.
  • Comment automation · 2
    Your automation settings and the queue of drafts waiting for approval or scheduled to go out.
  • Feed keywords · 1
    The keywords you subscribe to for keyword-matched posts in your feed.
  • Billing, plans and consumption · 3
    Your plan, credit balances, consumption breakdown by user and feature, invoices, and the available plans.
  • Search and fetch · 2
    One search across your leads, posts, drafts and knowledge base, and a fetch that opens any result in full. These carry the names ChatGPT expects for its research surface, and work the same way in every client.
  • Team and targets · 2
    Your organization’s member roster (owners only) and the activity targets set for the team.
  • Workflows · 5
    Your automation workflows, one workflow’s draft and published version, the result of a single run, the catalog of node types the engine offers, and a validation pass that tells you why a draft is not ready to publish.

What it can change

56 tools write. They do exactly what the equivalent button in the app does — same permission checks, same validation, same credit accounting — driven by Claude instead of a click. Anything that spends credits is quoted to you first: Claude tells you what it will cost and what your organization has left, and only goes ahead once you say so.

  • Setup and integrations · 5
    Create a workspace and become its owner, fill the four company-context fields that get injected into every AI prompt, connect Aimfox, HeyReach, lemlist or SendPilot with an API key you paste, run your LinkedIn scorecard, and mark onboarding complete. Creating a workspace previews first and writes nothing until you confirm, and it is capped at three a day.
  • Content · 10
    Generate a post with AI, create and edit drafts (including attaching an image by URL), schedule a draft for automatic publishing to LinkedIn, publish a draft to LinkedIn immediately, unschedule a scheduled draft, delete a draft, fetch your own LinkedIn posts and comments so the AI can learn your voice, draft your style instructions from them, and save your personal style.
  • Leads · 7
    Add profiles by LinkedIn URL, pull every reactor and commenter off a LinkedIn post or account into your organization, get people proposed from your own LinkedIn activity, enrich leads you already have, assign leads to teammates, delete leads (owners only), and push a lead out to your connected HubSpot, Salesforce, Pipedrive or Attio (owners only). Anything that costs credits is quoted first: Claude shows the exact cost and what your balance will be afterwards, and can only spend against a quote you approved.
  • Lead lists · 6
    Create, rename and delete lists, add and remove leads from them, and flag leads as ready for outreach.
  • Watchlist and engagement · 4
    Remove profiles from the watchlist, generate a comment with AI, post a comment on LinkedIn, and react to a post on LinkedIn.
  • Feed state and keywords · 3
    Claim, unclaim or mark posts as seen for your team, and subscribe or unsubscribe from feed keywords.
  • Comment automation · 3
    Change your automation settings (daily cap, approval mode, quiet hours), and approve or reject a queued draft.
  • Knowledge base · 3
    Add a text note, ingest public web pages by URL so our server fetches and indexes them, and delete an asset.
  • ICPs · 7
    Have ICPs proposed from your own company website and commit the ones you pick, then create, edit and delete ICPs by hand, recompute their matches, and apply them to a lead list.
  • Team and targets · 2
    Invite a person to your organization by email (owners only), and set the team’s activity targets.
  • Workflows · 6
    Create and edit an automation workflow as a draft, run the draft once against a subject you name, publish the draft so it starts firing on its own, pause a live workflow, and resume a paused one on the version it was already running.

The thirteen tools that leave GTM Brigade

Most tools only touch data inside your account. Thirteen do not, and they split into two kinds. Nine are visible to other people or land in someone else's system, and cannot be taken back from here:

  • Publish a post. Publishes one of your drafts immediately and publicly on LinkedIn, under your own LinkedIn identity, using the LinkedIn account you connected in the app. There is no scheduler in between and no undo from GTM Brigade — once it is live, taking it down is a manual job on LinkedIn itself.
  • Post a comment. Publishes immediately and publicly on LinkedIn, under your own LinkedIn identity, using the LinkedIn account you connected in the app.
  • React to a post. Sets your reaction immediately and publicly on LinkedIn, under your own identity.
  • Approve a comment-automation draft. Schedules that comment; our publisher posts it publicly on LinkedIn as you, with no further confirmation.
  • Invite a team member. Sends an invitation email to the address you name.
  • Push a lead to your CRM. Writes that lead's details — name, email, company, job title, LinkedIn URL — into your connected HubSpot, Salesforce, Pipedrive or Attio. This one is different from the others: it goes out under your organization's shared CRM connection rather than your personal one, so it is restricted to owners. It matches on email address, so pushing the same lead twice updates the existing record instead of creating a duplicate — and a lead with no email address is refused outright, which in practice rules out most LinkedIn-sourced leads until you add one. In Salesforce it creates a Lead, not a Contact, so your own Lead-to-Contact conversion stays yours to run.
  • Publish, resume or test-run a workflow. Three tools, one consequence: they arm an automation that then acts on its own, repeatedly, as you — posting, commenting, sending DMs, writing to your CRM — with no further prompt each time it fires. Test-running is not a rehearsal either: it runs the draft for real against a subject you name. Publishing previews the difference against what is running today before it commits.

The other four reach a third party without publishing anything, which is a smaller thing but still worth naming:

  • Add web pages to the knowledge base. Our server fetches the URLs you give it, so those sites see a request from us. What comes back is untrusted third-party text and is handled as data, never as instructions.
  • Discover leads from a LinkedIn post or account. Reads the engagers off LinkedIn rather than out of your own database.
  • Connect an outreach provider. The API key you paste is validated against Aimfox, HeyReach, lemlist or SendPilot live before it is stored encrypted against your own user. It is never echoed back, logged, or shown again, and teammates stay unconnected until they do the same.
  • Read your integrations. A read, but not an inert one: it re-checks each stored key against that provider's live API, which is why it takes a few seconds.

Scheduling a post is worth knowing about alongside these: it does not publish when you ask, but GTM Brigade will publish it to LinkedIn for you at the scheduled time. Undo it with the unschedule tool before it fires. It is the calmer sibling of publishing immediately — prefer it unless you really mean “now.”

What “destructive” means here

Eleven tools are flagged destructive, which is what makes Claude warn you before running them. None of them is a hard wipe. Six remove something. The other five either overwrite work you may not get back, or arm an automation that then acts on its own:

  • Remove from watchlist. Deletes that profile’s collected posts, comment suggestions and assignees in your organization. The person stays in your lead database — they are demoted from watched profile to lead, never fully deleted.
  • Delete lead. The app’s soft delete: the lead disappears from your database and its list memberships are removed. Recoverable only by us, on request. Owners only, 50 per call.
  • Delete lead list. A soft delete of the list and its memberships. The leads themselves are not deleted and stay in your org. Default lists, such as the watchlist, cannot be deleted at all.
  • Delete draft. Permanently deletes one of your own drafts. Refuses anything scheduled or already published — you have to unschedule first.
  • Delete knowledge-base asset. Removes the stored file and its semantic index entries. Same rule as the app: your own assets, or any asset if you are an owner.
  • Delete ICP. Permanently deletes the ICP, its signals and its lead matches. Owners only.
  • Apply proposed ICPs. This one overwrites rather than deletes. Committing the suggestions replaces your organization’s ICP criteria and rewrites its lead-scoring rules from the ones you picked, so a configuration you tuned by hand is gone. The first call spends nothing and returns a full preview of what would be replaced, and only a second call with that token goes ahead.
  • Propose leads. Destructive by failure, not by design. It adds nobody to your organization, but a rebuild replaces the stored candidate list — and a rebuild that fails replaces it with an empty one. That same list is what the signup wizard’s profile-selection screen reads, so do not refresh a list you are happy with just to be thorough.
  • Publish a workflow. Takes the current draft live. If the workflow was already running, the version it was running is replaced, with no undo beyond pausing it or rolling back on the canvas. From that moment the graph fires on its own whenever its trigger happens. The first call previews the difference against what is running today and changes nothing.
  • Resume a workflow. Restarts a paused workflow on the version that was already published, not on the draft. It starts acting on its own again, for real, as you. Resume and publish are easy to confuse and behave differently, so your assistant is told to ask which you meant.
  • Run a workflow once. Runs the draft one time against a subject you name. There is no pretend mode: if the flow comments, a comment is posted; if it writes to your CRM, the record is written. It always runs the draft, so it can never tell you what the live version does.

Access & permissions

The connector respects the exact same permissions as the app. Who you are and what you may do are worked out on our side from the account you signed in with — never from anything Claude sends us. If Claude asks for another organization's data, the request simply does not resolve.

Every member can read and act on their own work. Owner-only tools — team leaderboard, team overview, Company Page analytics, member roster, invitations, lead deletion, ICP deletion — give a member a plain “requires owner access” message, never another person's data. Everything is scoped to the organizations you belong to.

Safety controls

  • Granular scopes. Access is split across 19 permissions — analytics, billing, leads, content, engagement, the watchlist, the knowledge base, the team, ICPs, settings and workflows, most of them split into reading and writing. Each tool checks its own scope before doing anything, so a connection granted part of the list reaches exactly that part. Drafting a workflow and letting one act are deliberately two different grants, so you can hand your assistant the drafting half without the acting half.
  • Per-user, per-organization isolation. Every query is scoped to your organization on our side. Your private personal knowledge-base assets stay isolated to you, including when Claude generates content from them.
  • Hourly budgets on outward actions. Public LinkedIn actions, invitations, AI generations, CRM pushes and web-page ingestion each have their own per-hour cap per user, and workspace creation is capped per day. A runaway agent loop hits the cap and stops with a clear message instead of spamming anyone.
  • Claude asks first. No write tool is marked read-only, so your client prompts you before running one — and warns harder on the destructive and outward-facing ones.
  • Your normal audit trail. Writes run through the same code paths as the app, so they land in the same records — activity logs, credit ledger and audit log — attributed to you.
  • Yours to revoke. Remove the connector in Claude at any time. Access tokens are short-lived and bound to this connector and your account.

What it deliberately cannot do

Some things were left out on purpose, because doing them safely needs more than a wrapper:

  • Repost. GTM Brigade has no repost action anywhere, and the connector does not invent one.
  • Message anyone on LinkedIn. There is no tool to send a DM, an InMail, or a connection request. The connector can comment and react in public; it cannot slide into anyone's inbox.
  • Change roles or remove members. It can invite, and that is all — a decision we made deliberately, not a gap. Lockout and billing consequences stay with a human.
  • Buy anything. No checkout, no plan changes, no payment details. Billing is read-only: consumption, invoices, plans.
  • Merge or hard-delete leads. Lead deletion is the app's recoverable soft delete; merging duplicates is not exposed at all.
  • Upload files. Text notes and public web pages by URL go into the knowledge base from chat. A file off your disk is still an upload in the app: there is no way to move a binary over this transport.
  • Run an OAuth handshake for you. LinkedIn, the CRM, the Company Page, Slack and Teams all connect in a browser. The connector reports whether each one is live and, for outreach providers, accepts a pasted API key — that is the whole of it.
  • Touch platform administration. Our internal staff tooling is not on the connector at all.

Privacy

See our privacy policy for what the connector accesses, what it changes, and who your data is shared with when you use it.

Support

Questions or issues? Email ovidiu.ionita@gtmbrigade.com.