Start small
Follow the quickstart to connect an agent and publish one change. The owner creates a page and project token inside Sure; the agent uses that token to work on that one page.
Project MCP and Git edit the same project source. A Git push updates the draft. Publishing
is a separate action; the normal Sure Publish button commits a changed draft for
you.
Choose the right access
The owner’s calendar agent uses a calendar access token withhttps://mcp.sure.day/mcp. It can read that owner’s connected sources. Applying
event changes needs both an editable agent grant and separate source-management
permission. Connect a calendar agent.
The owner’s frontend agent uses a project token with
https://app.sure.day/project-mcp or that project’s Git remote. It can read and
edit source, change scheduling policy, and publish. Keep the token in the agent’s
secret configuration, never in public frontend code or a Git remote URL.
The booker or their agent uses https://app.sure.day/booking-rpc. Reading
slots and creating a booking require no owner login. Changing an existing booking
requires its private management token. Availability does not expose event titles
or attendees.
Use the direction the owner or booker has given you. After a timeout, check the
current state and reuse the same idempotency key for the same booking request.
A pending operation is not a confirmed booking.
Read these docs with an agent
- Project MCP and Git reference
- Calendar MCP and source edits
- Frontend and scheduling configuration
- Booking RPC reference
- Project MCP tool schemas, generated from the implemented project catalog;
authenticated
tools/listis authoritative. - Agent index and complete reference as text.
What is available today
Projects host static HTML, CSS, and JavaScript with one scheduling offer per project. Git accepts fast-forward updates tomain. Public booking supports
creation, rescheduling, and cancellation of Sure-created Google Calendar bookings
after the owner selects a destination and grants booking write access.
External project MCP does not expose private calendar reads, account connections,
concierge conversations, memory, worker control, or voice. Private calendar reads
and supported source-event changes use the separate owner-authorized calendar MCP.
Concierge conversations, memory, workers, and voice remain inside Sure. Payments,
team routing, and webhooks are future possibilities, not current public contracts.