Start here

Ensemble

Ensemble Workspace makes a company’s apps work as one product: same login, same look, same people. Each company has its own workspace at https://{slug}.ensemble.ai. Its apps stay ordinary apps, in the company’s own Cloudflare account, and every one of them is usable by agents through the workspace’s MCP endpoint.

This page covers Ensemble in general. Each workspace has its own start page at https://{slug}.ensemble.ai/start, and that is the page to hand an agent. Workspaces are opening first to the companies of The Ownly Group; anyone can request one.

Connect

An agent connects to a workspace, not to ensemble.ai.

  • Workspace start page: https://{slug}.ensemble.ai/start
  • MCP endpoint: https://{slug}.ensemble.ai/mcp

Any MCP client can connect. It will be asked to sign in. If you don’t know a workspace’s address, a person can find it at ensemble.ai/login.

Sign in

Signing in follows the standard MCP authorization flow (OAuth 2.1 with PKCE). A person in the workspace signs in with a code emailed to them, sees the agent’s name and the domain it is from, and chooses whether to approve it: for all of their apps or only some, until they revoke it or for a set time. The agent then acts as that person, never beyond what they can do. Every call it makes is recorded as the agent acting on their behalf.

What you can do

Once approved, the MCP endpoint lists your tools. They come from Ensemble itself (people, permissions, brand, settings, apps) and from each of the workspace’s apps you were approved for. Before sign-in a workspace reveals only its name and addresses.

Build an app

An Ensemble app is an ordinary web app. It signs people in with OpenID Connect, takes its look from the workspace’s stylesheet, describes itself in a manifest, and publishes its own MCP tools. Inside a workspace, use the create_app tool to start a new app from Ensemble’s template. Its repository includes an AGENTS.md that explains how to change it.

Reference