Private tools4
Safe demo tools exposed.
Default postureRead
Writes require approval.
TransportHTTP
Streamable MCP target.
BoundaryZero
No private ingress required.
Published MCP tools
| Tool | Name | Description | Policy |
|---|---|---|---|
| Lead triage | lead_triage | Score a business lead, classify urgency, and recommend the next follow-up owner and channel. | read only |
| Follow-up draft | follow_up_draft | Draft a concise follow-up for a business lead while preserving approval before send. | read only |
| Secure tunnel runbook | secure_tunnel_runbook | Generate a customer-specific Secure MCP Tunnel installation runbook for a private business tool. | read only |
| Approval policy check | approval_policy_check | Classify whether a proposed tool action should run automatically, require approval, or be blocked. | read only |
Live tool call
Ready.
Approval lane
1. Discover
Import only approved MCP tools.
2. Classify
Tag public, customer, financial, and write actions.
3. Decide
allow review block
4. Execute
Run read-only calls; hold writes for approval.
5. Audit
Keep actor, tenant, tool, decision, and timestamp.
Connector target
POST https://private-mcp.usebelha.com/mcp
Content-Type: application/json
{
"jsonrpc": "2.0",
"id": "tools",
"method": "tools/list"
}Secure tunnel fit
Cloudflare hosts the control plane and safe public demo MCP endpoint. Customer-private MCP servers stay behind their firewall and connect to OpenAI through Secure MCP Tunnel.