Connect Control D to AI agents

Connect Control D to Claude, Codex, Cursor, or other AI agents for your entire team. Metorial security, governance, observability, and gives your team a unified Magic MCP url to connect.

Supported Tools

manage_custom_rules

Manage Custom Rules

Create, list, update, or delete custom domain-level DNS rules on a profile. Custom rules provide granular control over individual domains, TLDs, and wildcard patterns. Each rule can block, bypass (allow), spoof (to a custom IP), or redirect traffic through a proxy location. Rules are organized into folders.

list_profiles

List Profiles

List all DNS filtering profiles in your Control D account. Each profile is a collection of rules and settings enforced on a DNS resolver. Returns profile names, IDs, and summary counts of filters, services, custom rules, and options configured on each.

manage_services

Manage Services

List or configure service-level DNS rules on a profile. Services represent specific apps/websites (e.g., Facebook, TikTok, Steam) that can be individually blocked, bypassed, or redirected through proxy locations. Supports listing all services on a profile, browsing service categories, and modifying service actions.

manage_filters

Manage Filters

List, enable, or disable DNS filters on a profile. Filters are pre-configured categories like Ads & Trackers, Malware, Adult Content, etc. You can list both native and third-party filters, or batch-enable/disable multiple filters at once.

manage_profile

Manage Profile

Create, update, or delete a DNS filtering profile. Profiles are collections of rules and settings enforced on DNS resolvers. You can create blank profiles or clone existing ones. Updates support renaming, disabling until a specific time, and locking/unlocking.

get_account_info

Get Account Info

Retrieve your Control D account information, billing history, active subscriptions, and products. Also returns your current external IP address as seen by Control D.

manage_ip_access

Manage IP Access

List, authorize, or deauthorize IP addresses for a device's DNS resolver. Useful for Legacy DNS enforcement where IP-based identification is required. Lists up to the latest 50 known IPs that have queried against a device.

manage_rule_folders

Manage Rule Folders

Create, list, update, or delete custom rule folders on a profile. Folders organize custom DNS rules and apply a shared action (block, bypass, spoof, redirect) to all rules within them.

manage_default_rule

Manage Default Rule

Get or update the default DNS rule for a profile. The default rule is the catch-all that applies to all domains not matched by custom rules, services, or filters. It can block, bypass, spoof, or redirect all unmatched traffic.

list_devices

List Devices

List all devices (endpoints) configured in your Control D account. Devices are unique DNS resolvers that enforce profiles. Optionally filter by device type (user devices or routers). Returns device names, resolver addresses, assigned profiles, and status.

list_proxies

List Proxies

List all available proxy locations for traffic redirection. Control D supports 100+ exit proxy locations worldwide. Use proxy codes (e.g., "JFK", "YYZ", "LOCAL") when configuring redirect actions on services, custom rules, or default rules.

manage_profile_options

Manage Profile Options

List all available profile options or update a specific option on a profile. Profile options control behaviors like DNS rebind protection, DNSSEC, IPv4/IPv6 compatibility, AI malware filtering, and TTL settings.

manage_organization

Manage Organization

View and update organization details, list members, and manage sub-organizations. Sub-organizations represent physical sites, departments, or customer companies that group profiles and endpoints together.

get_analytics_config

Get Analytics Config

Retrieve available DNS query logging levels and analytics storage regions. Log levels control what gets recorded (off, basic, full). Storage regions determine where analytics data is kept geographically.

manage_device

Manage Device

Create, update, or delete a device (endpoint). Devices are unique DNS resolvers that enforce profiles on physical devices. When created, resolver addresses (DoH, DoT, IPv4, IPv6) are automatically provisioned. You can assign profiles, configure IP learning, enable legacy resolvers, set analytics levels, and more.

More integrations teams use with Control D

GitHub

Manage repositories, issues, and pull requests. Create and configure branches, star repositories, review code, and merge changes. Automate CI/CD workflows with GitHub Actions, manage workflow runs, secrets, and artifacts. Track issues with labels, milestones, and assignees. Search across code, repositories, issues, and users. Manage organizations, teams, and memberships. Create and manage projects, gists, packages, deployments, and environments. Access security alerts including code scanning, secret scanning, and Dependabot alerts. Read and write file contents in repositories. Manage webhooks, notifications, and codespaces.

Sharepoint

Manage SharePoint sites, document libraries, lists, and files. Create, read, update, and delete lists and list items with custom columns. Upload, download, move, copy, and version files in document libraries. Search across sites, files, folders, lists, and list items using Microsoft Search. Manage permissions at site, list, and item levels with granular access control. Define and manage content types and site columns. Subscribe to webhooks for list and library change notifications. Retrieve site properties and search for sites across Microsoft 365.

Salesforce

Manage CRM data including Accounts, Contacts, Leads, Opportunities, Cases, and custom objects. Create, read, update, and delete records. Query data using SOQL and search across objects using SOSL. Perform bulk data operations for large-scale imports, exports, and migrations. Execute composite requests to batch multiple operations in a single API call. Access analytics, reports, and dashboards. Manage files and attachments associated with records. Interact with Chatter feeds, posts, and groups for social collaboration. Subscribe to real-time change events via Change Data Capture and Platform Events. Manage org metadata including custom objects, fields, layouts, and workflows. Query data using GraphQL for precise data retrieval across related objects.

Airtable

Create, read, update, and delete records in Airtable bases and tables. Manage base schemas including creating tables and fields. Filter records using formulas, sort by fields, and scope queries to specific views. Upsert records to find, create, or update in a single call. Upload attachments to records, read and write record comments, list accessible bases, and receive real-time base change events through webhooks.

Bitbucket

Manage Git repositories, pull requests, and CI/CD pipelines on Bitbucket Cloud. Create, fork, and configure repositories within workspaces and projects. Create, review, approve, merge, and decline pull requests with inline code comments. Browse source code, list commits, and manage branches and tags. Track issues with the built-in issue tracker. Trigger, monitor, and manage Bitbucket Pipelines. List workspace members, configure repository default reviewers and branch restrictions, create and manage repository webhooks, and search code across repositories.

Heroku

Deploy, manage, and scale applications on Heroku's cloud platform. Create and configure apps, scale dynos, provision add-ons (databases, caching, etc.), manage configuration variables, build and release code, add custom domains and SSL certificates, manage collaborators and team permissions, configure pipelines for continuous delivery, set up log drains, and sync data with Salesforce via Heroku Connect. Subscribe to webhooks for real-time notifications on app changes, builds, releases, dyno lifecycle events, and more.

Technical notes for Control D

Manage DNS filtering profiles, custom rules, and traffic redirection. Create and configure profiles with filters (ads, trackers, adult content, etc.), block or redirect 400+ specific services, and define custom domain-level rules including blocking, allowing, spoofing, and proxying. Manage devices/endpoints and assign profiles with scheduled swapping. Control IP-based access authorization, configure analytics logging, browse proxy locations for traffic redirection, and manage organizations and sub-organizations. Retrieve account, billing, and subscription information.

Connect Control D to production AI agents

See how Metorial gives Control D access the governance, tracing, and security controls teams need.

Frequently asked questions

Common questions about connecting Control D to AI agents with Metorial.

  1. Can Metorial connect Control D to AI agents?
    Yes. Metorial connects AI agents to Control D through a governed integration layer, so teams can use the provider while keeping access controlled and observable.
  2. Metorial is MCP compatible and lets teams expose approved provider tools to MCP-capable agents and clients through a controlled access layer.
  3. Metorial applies policies across users, groups, providers, agents, and individual tools, then records the context around every agent interaction.
  4. Yes. Metorial records provider activity so teams can inspect tool calls, troubleshoot integrations, and give security teams the visibility they need.