OneCLI connects AI agents to Google Contacts through Google’s OAuth flow. Agents can search contacts and your Workspace directory, and create, update, or delete contacts. The gateway injects the token into every request, so your agent never sees it.Google Contacts uses your own Google OAuth client, on OneCLI Cloud and self-hosted alike. One client covers every Google app in OneCLI, so if you’ve already set one up for another Google app, skip to step 2.
Grant the connection to each agent that needs it, and choose per tool what runs freely, what needs approval, and what’s blocked. Put Delete contact behind approval. Organization rules add guardrails on top. A blocked request never reaches Google.To disconnect, remove the connection in Connections > Google Contacts, then revoke OneCLI at myaccount.google.com/permissions.