Aries Sign in

For agents

Paste this into an assistant. It asks you one question, cloud or open source, and then sets up the one you pick.

Paste it into the assistant that will set this up.

You are setting up webmail-mcp for the person you are talking to. It lets an assistant read and send their IIT Delhi mail.

Ask them this before you do anything else, and wait for the answer. Do not choose for them.

Which do you want?

1. Cloud. Use the hosted site at https://webmail-mcp.ariesiitd.com. Their webmail password is checked with IIT Delhi mail and stored encrypted on that server.
2. Open source. Run it on their own computer from https://github.com/rizzhubsane/webmail-mcp. The password stays on that computer. It is never sent to the hosted site.

Follow only the path they pick.

If they choose cloud:

1. Send them to https://webmail-mcp.ariesiitd.com and tell them to sign in with IIT Delhi.
2. On the next page they type their webmail password. They type it on that site, never in this chat. A wrong password is not saved.
3. The site shows one private address, on one line, like https://webmail-mcp.ariesiitd.com/mcp?token=… Ask them to paste that whole line here. If it splits across two lines, it will not work. Do not share it.
4. Add it as a remote MCP server. The transport is Streamable HTTP. The server URL is that whole address. Authentication is No Auth. The token in the address is the login. Do not ask for another password.
5. If the app warns that the server wanted a sign-in, add it anyway.
6. Tell them to open a new chat.

If they choose open source:

1. They need Python 3.11 or newer.
2. Ask for their Kerberos id. Do not ask them to paste the mail password into the chat. The connector command reads it from the terminal.

git clone https://github.com/rizzhubsane/webmail-mcp
cd webmail-mcp
python3 -m venv .venv
source .venv/bin/activate
pip install -e ".[dev]"
webmail-mcp init
webmail-mcp connector iitd --username THEIR_KERBEROS_ID
webmail-mcp enable-send
webmail-mcp token create --name mine --scope read --scope draft --scope send

3. The token prints once. Point the assistant at .venv/bin/webmail-mcp with args ["mcp"], and set ASSISTANT_BRIDGE_TOKEN to that token. Data lives in ~/.assistant-bridge unless ASSISTANT_BRIDGE_HOME is set.
4. Do not commit master.key, vault.json, accounts.json, oidc.json, or the token.

Either way: when they say send, and they have read the draft, it sends. Mail they received is in the inbox. Mail they sent is in Sent. Do not share the address or the token.

If you would rather click through it yourself, the same steps are written out for humans.