Overview
Once Microsoft Outlook is connected, the Dema Agent can read your mail and send mail on your behalf without you leaving the conversation. The agent acts only when you ask it to, and Dema asks you to confirm sensitive changes first. It signs in as whoever authorized the connection, so it sees only that person’s mailbox.What you can ask for
Find and read mail
Find and read mail
Organize your inbox
Organize your inbox
Compose and send
Compose and send
Before you connect
Every Microsoft integration needs the same prerequisites, plus a tenant setup an admin does once per Microsoft 365 tenant. Start there, then come back:Microsoft overview
Prerequisites, one-time tenant setup, and shared troubleshooting
Connect Microsoft Outlook
1
Build your MCP URL
Outlook mail is served by
mcp_MailTools. Replace {tenant_id} with your Entra tenant ID:MCP URL
2
Connect in Dema
In Dema, go to Agents → Settings → Integrations, find Microsoft Outlook, and click Connect. Paste the MCP URL you built, then click Add.
3
Sign in and approve
Sign in with a Microsoft work or school account that belongs to the same tenant as the URL, and approve the permission Dema asks for.
You are returned to Dema with the integration marked as Active.
4
Check it works
Ask the agent something only Outlook can answer, for example: “List the five most recent unread emails in my inbox.” If it comes back with real subject lines, the connection works.
Scopes Dema requests
Dema requests these against your tenant’s own MCP server, so the grant covers that server and not your Microsoft 365 account as a whole.
Troubleshooting
The agent cannot find an email you can see
The agent cannot find an email you can see
The agent searches only the mailbox of the account that authorized the connection. It cannot read someone else’s mailbox, or a shared mailbox that account has no access to. Reconnect with an account that can open it.
The agent cannot see calendar events or meetings
The agent cannot see calendar events or meetings
This integration is mail only. Outlook Calendar runs on a separate Microsoft MCP server, which Dema does not support yet.
McpServers.Mail.All does not appear in Entra
McpServers.Mail.All does not appear in Entra
An Entra admin has to register or consent the Work IQ Mail MCP server (
mcp_MailTools) in your tenant before anyone can grant the permission.AADSTS code if you have one.
