io.pingroom/pingroom

PingRoom

Send mobile pings and route human questions, approvals, and handoffs from AI agents.

0.1.0
Version
remote
Transport
41
Tools

Security review

Review passed

Reviewed 21h ago.

  • tools: 41 tools scanned
  • metadata: scanned

No findings.

Tools (41)

  • connection_info

    Verify the current connection: owner.id is the human public User ID, handle identifies the robot, and home_room is its delivery room. After login or reconnect, match owner.id and handle to the approved account and robot before sending. A mismatch means stop and reload or restart the MCP client. Includes a credential-protected latest-pings feed and token-free install URL; never send credentials to the install URL.

  • disconnect

    Revoke this authenticated robot connection, including its access and refresh credentials and room memberships. Use only when the human explicitly requests logout, disconnection, or reconnection. Call BEFORE clearing local credentials or running MCP logout/login. It affects only the current connection and accepts no account or robot selector. After login, restart or reload the MCP client, then match connection_info owner.id and handle to the approved account and robot before sending.

  • list_rooms

    List the rooms the authenticated account belongs to.

  • list_quick_actions

    List the quick actions configured for a room.

  • trigger_quick_action

    Press a room quick action, notifying its members. Rate-limited. Read the action's input_type first (list_quick_actions): location needs data.location, link needs data.url, file/photo/pdf need attachment_ids — a press without the matching detail is a 422 quick_action_input_required.

  • broadcast

    Send a custom ping to a room the account belongs to. Rate-limited. Not available in personal rooms (use trigger_quick_action there).

  • live_status

    Start, update, or end a live progress card on the room members' lock screen (an iOS Live Activity / Android live update). Reuse the same correlation_id for every ping of one stream: the first ping starts the card and sends one alert, further "running" pings move it silently, and the first "done"/"failed" sends one completion alert and ends it. Free accounts get a small number of NEW streams per day; updates and the final ping of an open stream are never charged; a first ping that is already "done"/"failed" counts as a new stream.

  • get_live_status

    Read back the current state of a live stream you created, so a restarted producer can reconcile instead of starting a duplicate. Only returns streams started by this credential, within the last 24 hours. Returns notification_id and correlation_id, then the stored display state (state, progress, message, category, template, accent_override, eta_at, deadline_at, duration_seconds, metrics, prompt, options, left, right, center, steps, current_step), action_state, and updated_at. Fields you never set come back as null rather than being omitted, so a matchup/metrics/countdown/question stream can be resumed without re-sending content.

  • list_room_icons

    List the room-icon catalog (icon ids, tags, and categories). Call this before create_room / create_public_room / create_webhook to pick a valid icon id, and to interpret icon values returned by reads.

  • list_notifications

    List a bounded page of recent pings across approved rooms, newest first. Use page to continue while has_more is true.

  • get_notification

    Fetch one visible ping by notification id, including its current action_state.

  • wait_for_notification

    Long-poll for the next ping. Blocks until one arrives or the timeout elapses — the real-time inbound channel for an agent. The agent's own sends are excluded.

  • wait_for_ack

    Long-poll a generic acknowledgement-required ping until its confirmation rule is met (any: first confirmation; all: every original eligible recipient), it expires, or the timeout elapses. Questions use wait_for_answer instead.

  • request_approval

    Ask the human to approve or reject an action, then block on their answer (pair with wait_for_approval). Delivered as a push to the connected human only, so like a direct ask_question to them it needs no trigger permission in the room; public and personal rooms are refused. Rate-limited.

  • wait_for_approval

    Long-poll an approval request until the human decides or it expires. Returns the status and, once decided, the chosen option.

  • get_approval

    Fetch the current status of an approval request without blocking.

  • ask_question

    Ask a person a question with 2-4 tappable options, then block on their answer (pair with wait_for_answer). Delivered as a push they can answer from the lock screen or in-app; the first valid answer wins. Rate-limited.

  • wait_for_answer

    Long-poll a question until it is answered or expires. Returns the state and, once answered, the chosen option value + label and the responder.

  • get_question

    Fetch the current state of a question without blocking.

  • list_questions

    List a bounded page of questions you asked, newest first. Optionally filter by state; use page while has_more is true.

  • cancel_question

    Withdraw a still-pending question you asked.

  • activate_agent_inbox

    Start or resume the onboarding Question in the private room the human chose during authorization. If recipient_not_ready, ask the human to install or update PingRoom from install_url, open the app, sign in, and enable notifications before retrying. Read question.id, then call wait_for_handoff only while state is pending and within a bounded local deadline. Success is answered with activation_completed true. Any other terminal result is incomplete: stop polling that attempt, then call activate_agent_inbox again for one numbered retry. The stamp requires native phone receipt before the human answer.

  • create_handoff

    Hand work to exactly one human as either an acknowledgement or a tappable question. The server verifies that one of the recipient's current devices supports the complete Handoff action before creating anything.

  • wait_for_handoff

    Long-poll a Handoff until the human resolves it, it expires, or the bounded timeout elapses. For the onboarding Question returned by activate_agent_inbox, success requires an answered result with activation_completed true; use a bounded local deadline and treat any terminal answer without that stamp as incomplete.

  • get_handoff

    Fetch the authoritative current state of one Handoff without blocking.

  • list_handoffs

    List a bounded page of this agent's Handoffs, newest first. Omit state (or use open) for unresolved work; use all for history and page while has_more is true.

  • upload_attachment

    Upload a small file (max ~90 KiB over MCP; Pro account required) and get an attachment id to include in broadcast or ask_question via attachment_ids. Larger files: use the PingRoom CLI or agent REST API.

  • get_attachment

    Fetch an attachment visible to this agent as base64 content plus metadata. Results over the connector size limit return attachment_too_large — fetch those via the agent REST API instead.

  • delete_attachment

    Delete an attachment this agent uploaded that is not yet claimed by a ping.

  • get_room

    Fetch a single room by its invite code, including members and quick actions.

  • create_room

    Create a new private room owned by the authenticated account. Free accounts may own up to five rooms. If this agent was granted every room and has no delivery room yet, the new room becomes its delivery room — where its handoffs and direct questions land.

  • create_public_room

    Create a publicly discoverable room with a unique @handle. Counts toward the free-plan five-room cap.

  • join_room

    Join a room using its invite code. Include the password only if the room is protected.

  • list_webhooks

    List the incoming webhooks (with their trigger URLs) for a room the account owns.

  • create_webhook

    Create an incoming webhook for a room the account owns. The bound account must be Pro. Returns the secret trigger URL — treat it as a credential.

  • update_webhook

    Update an incoming webhook (by id) on a room the account owns — e.g. change its icon, title, message, or sound.

  • delete_webhook

    Delete an incoming webhook (by id) from a room the account owns.

  • update_quick_action

    Configure a numbered quick-action slot for a room the account owns. Sends a background room refresh to room members' devices.

  • update_quick_actions

    Configure several of a room's quick-action slots in one call. Prefer this over repeated update_quick_action: each single-slot write wakes room members' devices with its own background refresh, so setting up four Pings one at a time spends four of a finite daily push budget on one operation. Slots you do not list are left exactly as they are, so this is also the right tool for editing a single Ping.

  • set_avatar

    Set this agent's avatar. Must be one of the PingRoom bot avatars.

  • rotate_handle

    Rotate this agent's public handle — kill-switch for a leaked handle.