ChatGPT confirms write tools; Sume MCP also gates them by scope

ChatGPT developer mode asks before write actions. Sume's hosted MCP adds a second gate: OAuth mcp:write, an idempotency_key and an optional max_spend_usd.

4 min readSume
All posts

Two separate controls sit between a ChatGPT prompt and a paid video call, and they answer different questions. ChatGPT's developer mode asks whether you want this tool call to happen. A hosted MCP server decides whether this session may call it at all.

OpenAI's developer mode guide (read 2026-10-05) says write actions require confirmation by default, that you should review the tool input before approving, and that tools without a readOnlyHint annotation are treated as write actions. You can also have ChatGPT remember an approve or deny choice for one tool for a conversation; a new or refreshed conversation asks again.

What Sume checks on its side

Sume's OAuth and API keys page defines two scopes: mcp:read (required) and mcp:write (opt-in, toggled on the consent page, off by default). There is no mcp:paid scope. A read-only session sees only read tools, and a write or paid call returns insufficient_scope.

Sume rows from docs.sume.com tools and gates, read 2026-10-05
ControlWho enforces itWhat it decides
Confirmation dialogChatGPTWhether this call runs now
mcp:write scopeSume MCP serverWhether the session may see or call write and paid tools
idempotency_keySume, required on write and paid toolsTransport and dedup, not human approval
max_spend_usdSume, only if you pass itA spend ceiling for that call
Wallet and admissionSumeWhether the balance and queue can take the job

What to do with that

Do not treat a clicked Allow as a budget. It approves one input, and the page above says idempotency_key is not human approval. If the model might loop, ask it to call the tool with dry_run=true first and a max_spend_usd, which Sume enforces only when you provide it.

For a read-only connector, leave Write off at consent and let ChatGPT use tools_list, balance_get and jobs_list. Turn Write on only for the sessions that should generate.

Sources

Related posts

More in Agents

All Agents posts

Written by Sume