Sume MCP consent: granting write always includes read

Sume's MCP consent offers mcp:read (required) and mcp:write (opt-in). A write grant always includes read, and there is no paid scope.

5 min readSume
All posts

On Sume's MCP consent screen, mcp:read is required and mcp:write is opt-in. A write grant always includes read, so there is no way to hold write without read. There is no mcp:paid scope either.

This follows Sume's OAuth and API keys and MCP tools and gates, read 2026-10-06.

What does each grant allow?

The table below lists each item as documented.

OAuth grants from the Sume MCP docs, read 2026-10-06.
GrantIncludesUse for
mcp:readRead toolsDiscovery, status, results
mcp:writeRead plus write toolsChanges that need approval
API keyFull tool setHeadless automation

Is a paid call blocked without a paid scope?

Do not assume so. Because no paid scope exists, spend is controlled by the call arguments instead: paid and write calls need idempotency_key, and dry_run and max_spend_usd are optional gates you send per call. Read the rule on the tools-and-gates page, and tell agents to send them.

Sources

Related posts

More in Developers

All Developers posts

Written by Sume