SpeakDo AI Agents

Give your AI agent the right business actions, not open access to your ERP.

Claude, ChatGPT, or any other compatible client can now ask questions about your business and trigger real business actions — but only from a closed, controlled catalog. The ERP always enforces the real permissions of the connected user, on every write.

Compatible with MCP clients that support SpeakDo's transport and authentication · Closed, versioned action catalog · Permissions enforced by Dolibarr · Available today with Dolibarr

Never open access to your ERP Permissions checked by Dolibarr Business profiles Confirmation before writes
What your AI agent can seeSpeakDo catalog — "Sales" profile

Allowed

  • Look up a customer or a record
  • Create a task or a follow-up
  • View the latest interventions
  • Draft a structured summary

Not exposed by SpeakDo

  • Open access to the entire Dolibarr database
  • Full billing export without a controlled action
Every write remains subject to the real permissions of the connected Dolibarr user.
The problem isn't the agent's intelligence

An agent that can talk about your business, or one that can do anything in it.

A generic AI agent can hold a convincing conversation about your business. But as soon as it needs to act on your real systems, the options collapse into two extremes — neither is acceptable for a business.

With no accessThe agent stays theoretical.It can advise you, but never create a task, find a record, or update an intervention.
With open API or database accessA real security risk.An unsupervised agent could read or write anything in the ERP, with no catalog and no safeguard.
With SpeakDoA closed catalog of business actions, under the user's real permissions.The agent acts, but only within the scope you defined.
How it works

Three safeguards between the agent and your ERP.

SpeakDo doesn't connect an AI agent directly to Dolibarr. It sits in between, with a defined catalog and checks at every step.

01

A closed catalog, not the raw API

SpeakDo exposes a versioned catalog of business actions — the same one used by the mobile app. Never direct access to the ERP's API or database.

02

Dolibarr permissions, on every write

Every action the agent proposes runs under the real permissions of the connected user. A right denied in Dolibarr stays denied through SpeakDo.

03

Confirmation before sensitive actions

Writes that call for it go through the same confirmation step used elsewhere in SpeakDo, before anything changes in the ERP.

The connection technology

MCP is the protocol. The business action catalog is the real point.

SpeakDo runs its own MCP (Model Context Protocol) server — the open standard that lets an AI client discover and call external tools in a structured way. That's what allows a compatible agent to connect to SpeakDo. But MCP is just the pipe: what matters is what flows through it — a closed catalog of business actions, never raw technical access to Dolibarr.

A standard MCP server

SpeakDo exposes an MCP endpoint compliant with the protocol. An MCP client that supports SpeakDo's transport and authentication can discover and use it without SpeakDo-specific development.

Claude, ChatGPT, and beyond

MCP-compatible clients from the Claude and ChatGPT ecosystems can connect, like any other client following the standard. SpeakDo is not an official partner of Anthropic or OpenAI — only compatibility with the protocol is involved.

Endpoint and authentication documented

The technical setup — endpoint, authentication — is documented for administrators and integrators in the SpeakDo documentation.

The catalog, not the raw API

Connecting over MCP doesn't grant wider access than the SpeakDo mobile app. It's the same closed catalog of business actions, never the full Dolibarr API.

The setup details for the MCP endpoint and authentication are described in the technical documentation.

Context by trade

What the agent sees in the catalog depends on the active profile.

SpeakDo's business profiles restrict and specialize the actions visible in a given context — a receptionist and a project manager don't get the same catalog exposed to an AI agent, even connected to the same Dolibarr instance.

Example

A receptionist profile may expose only one or two very safe actions — identify a contact, create a ticket — never financial data. The full explanation of profiles is on the Roles page.

Security

The ERP stays the final authority, never the agent.

An AI agent connected through SpeakDo doesn't bypass any of the security principles already applied to SpeakDo's other use cases.

The connected user's Dolibarr permissions are the final authority, never bypassed by the agent.
No free-form writes: only a closed, versioned catalog of business actions is exposed.
An agent never sees more than what its profile and the tenant's policy allow.
Nothing new to administer

The security of an AI agent connected over MCP relies on the same mechanisms as the rest of SpeakDo: Dolibarr permissions, closed catalog, confirmation before writes. Full detail is on the Security page.

Frequently asked questions

Simple to understand.

The full detail per topic is on the dedicated pages — Dolibarr, Roles, Security.

Is SpeakDo an MCP server for Dolibarr?

Technically, yes: SpeakDo exposes an MCP server that a compatible client can connect to. But that's not the real point. What SpeakDo brings is giving the agent the right business actions, in the right context — a closed, controlled catalog — never raw technical access to the Dolibarr API or database. MCP is the pipe; the action catalog is what matters.

Can my AI agent do anything in my ERP through SpeakDo?

No. The agent only sees the closed catalog of actions allowed by your profile and your SpeakDo policy, and every write still goes through the connected Dolibarr user's real permissions — exactly like the mobile app.

Which agents or clients are compatible?

MCP clients that support the transport and authentication SpeakDo uses, for example clients from the Claude or ChatGPT ecosystems. MCP promotes interoperability, but clients can differ on those two points — universal compatibility isn't guaranteed. This implies no official partnership with Anthropic or OpenAI.

Does this work without Dolibarr?

Not today. SpeakDo AI Agents relies on the same business layer as the rest of SpeakDo, and Dolibarr is currently the only ERP integration actually available. See the Integrations page.

Do I need custom development to connect my agent?

No, as long as your AI client is MCP-compatible. The SpeakDo-side setup — endpoint and authentication — is described in the technical documentation, aimed at administrators and integrators.

Can an AI agent see financial data?

Only if the active profile and the connected user's Dolibarr permissions allow it. By default, front-desk or support-oriented profiles expose no financial data. See the Roles page.

Go further

Read the technical setup, or discover SpeakDo for Dolibarr.

The technical setup of the MCP server is documented for administrators and integrators. Dolibarr remains the only ERP integration available today.