How to integrate Salesforce MCP with Mastra AI

Framework Integration Gradient
Salesforce Logo
Mastra AI Logo
divider

Introduction

This guide walks you through connecting Salesforce to Mastra AI using the Composio tool router. By the end, you'll have a working Salesforce agent that can add new contact to spring campaign, clone opportunity with all associated products, complete follow-up task for lead smith, associate contact jane doe to acme account through natural language commands.

This guide will help you understand how to give your Mastra AI agent real control over a Salesforce account through Composio's Salesforce MCP server.

Before we dive in, let's take a quick look at the key ideas and tools involved.

TL;DR

Here's what you'll learn:
  • Set up your environment so Mastra, OpenAI, and Composio work together
  • Create a Tool Router session in Composio that exposes Salesforce tools
  • Connect Mastra's MCP client to the Composio generated MCP URL
  • Fetch Salesforce tool definitions and attach them as a toolset
  • Build a Mastra agent that can reason, call tools, and return structured results
  • Run an interactive CLI where you can chat with your Salesforce agent

What is Mastra AI?

Mastra AI is a TypeScript framework for building AI agents with tool support. It provides a clean API for creating agents that can use external services through MCP.

Key features include:

  • MCP Client: Built-in support for Model Context Protocol servers
  • Toolsets: Organize tools into logical groups
  • Step Callbacks: Monitor and debug agent execution
  • OpenAI Integration: Works with OpenAI models via @ai-sdk/openai

What is the Salesforce MCP server, and what's possible with it?

The Salesforce MCP server is an implementation of the Model Context Protocol that connects your AI agent and assistants like Claude, Cursor, etc directly to your Salesforce account. It provides structured and secure access to your CRM data, so your agent can perform actions like managing contacts, handling opportunities, automating campaigns, and tracking tasks on your behalf.

  • Automated contact and lead management: Effortlessly create new accounts, add contacts or leads to campaigns, and associate contacts with accounts to keep your CRM data up-to-date.
  • Streamlined opportunity management: Let your agent clone opportunities, add products to deals, and manage the full sales cycle for your pipeline.
  • Intelligent campaign automation: Enable your agent to create campaigns, enroll contacts or leads, and track campaign engagement for more effective marketing.
  • Task completion and workflow efficiency: Have your agent mark Salesforce tasks as completed and update records, keeping your team on track without manual intervention.
  • Flexible record operations: Allow the agent to clone existing records or apply lead assignment rules, ensuring data consistency and smart routing across your Salesforce environment.

Supported Tools & Triggers

Tools
Triggers
Add contact to campaignAdds a contact to a campaign by creating a campaignmember record, allowing you to track campaign engagement.
Add lead to campaignAdds a lead to a campaign by creating a campaignmember record, allowing you to track campaign engagement.
Add product to opportunityAdds a product (line item) to an opportunity.
Apply lead assignment rulesApplies configured lead assignment rules to a specific lead, automatically routing it to the appropriate owner based on your organization's rules.
Associate contact to accountAssociates a contact with an account by updating the contact's accountid field.
Clone opportunity with productsClones an opportunity and optionally its products (line items).
Clone recordCreates a copy of an existing salesforce record by reading its data, removing system fields, and creating a new record.
Complete taskMarks a task as completed with optional completion notes.
Create accountCreates a new account in salesforce with the specified information.
Create campaignCreates a new campaign in salesforce with the specified information.
Create contactCreates a new contact in salesforce with the specified information.
Create leadCreates a new lead in salesforce with the specified information.
Create noteCreates a new note attached to a salesforce record with the specified title and content.
Create opportunityCreates a new opportunity in salesforce with the specified information.
Create taskCreates a new task in salesforce to track activities, to-dos, and follow-ups related to contacts, leads, or other records.
Delete accountPermanently deletes an account from salesforce.
Delete campaignPermanently deletes a campaign from salesforce.
Delete contactPermanently deletes a contact from salesforce.
Delete leadPermanently deletes a lead from salesforce.
Delete notePermanently deletes a note from salesforce.
Delete opportunityPermanently deletes an opportunity from salesforce.
Get accountRetrieves a specific account by id from salesforce, returning all available fields.
Get campaignRetrieves a specific campaign by id from salesforce, returning all available fields.
Get contactRetrieves a specific contact by id from salesforce, returning all available fields.
Get dashboardGets detailed metadata for a specific dashboard including its components, layout, and filters.
Get leadRetrieves a specific lead by id from salesforce, returning all available fields.
Get noteRetrieves a specific note by id from salesforce, returning all available fields.
Get opportunityRetrieves a specific opportunity by id from salesforce, returning all available fields.
Get report metadataGets detailed metadata for a specific report including its structure, columns, filters, and groupings.
Get report instance resultsGets the results of a report instance created by running a report.
Get user infoRetrieves information about the current user or a specific user in salesforce.
List accountsLists accounts from salesforce using soql query, allowing flexible filtering, sorting, and field selection.
List campaignsLists campaigns from salesforce using soql query, allowing flexible filtering, sorting, and field selection.
List contactsLists contacts from salesforce using soql query, allowing flexible filtering, sorting, and field selection.
List dashboardsLists all dashboards available in salesforce with basic metadata including name, id, and urls.
List email templatesLists available email templates in salesforce with filtering and search capabilities.
List leadsLists leads from salesforce using soql query, allowing flexible filtering, sorting, and field selection.
List notesLists notes from salesforce using soql query, allowing flexible filtering, sorting, and field selection.
List opportunitiesLists opportunities from salesforce using soql query, allowing flexible filtering, sorting, and field selection.
List reportsLists all reports available in salesforce with basic metadata including name, id, and urls.
Log callLogs a completed phone call as a task in salesforce with call-specific details like duration, type, and disposition.
Log email activityCreates an emailmessage record to log email activity in salesforce, associating it with related records.
Mass transfer ownershipTransfers ownership of multiple records to a new owner in a single operation using salesforce's composite api for better performance.
Remove from campaignRemoves a lead or contact from a campaign by deleting the campaignmember record.
Run reportRuns a report and returns the results.
Run SOQL queryExecutes a soql query against salesforce data.
Search accountsSearch for salesforce accounts using multiple criteria like name, industry, type, location, or contact information.
Search campaignsSearch for salesforce campaigns using multiple criteria like name, type, status, date range, or active status.
Search contactsSearch for salesforce contacts using multiple criteria like name, email, phone, account, or title.
Search leadsSearch for salesforce leads using multiple criteria like name, email, phone, company, title, status, or lead source.
Search notesSearch for salesforce notes using multiple criteria like title, body content, parent record, owner, or creation date.
Search opportunitiesSearch for salesforce opportunities using multiple criteria like name, account, stage, amount, close date, or status.
Search tasksSearch for salesforce tasks using multiple criteria like subject, status, priority, assigned user, related records, or dates.
Send emailSends an email through salesforce with options for recipients, attachments, and activity logging.
Send email from templateSends an email using a predefined salesforce email template with merge field support.
Send mass emailSends bulk emails to multiple recipients, either using a template or custom content.
Update accountUpdates an existing account in salesforce with the specified changes.
Update campaignUpdates an existing campaign in salesforce with the specified changes.
Update contactUpdates an existing contact in salesforce with the specified changes.
Update leadUpdates an existing lead in salesforce with the specified changes.
Update noteUpdates an existing note in salesforce with the specified changes.
Update opportunityUpdates an existing opportunity in salesforce with the specified changes.
Update taskUpdates an existing task in salesforce with new information.

What is the Composio tool router, and how does it fit here?

What is Tool Router?

Composio's Tool Router helps agents find the right tools for a task at runtime. You can plug in multiple toolkits (like Gmail, HubSpot, and GitHub), and the agent will identify the relevant app and action to complete multi-step workflows. This can reduce token usage and improve the reliability of tool calls. Read more here: Getting started with Tool Router

The tool router generates a secure MCP URL that your agents can access to perform actions.

How the Tool Router works

The Tool Router follows a three-phase workflow:

  1. Discovery: Searches for tools matching your task and returns relevant toolkits with their details.
  2. Authentication: Checks for active connections. If missing, creates an auth config and returns a connection URL via Auth Link.
  3. Execution: Executes the action using the authenticated connection.

Step-by-step Guide

Prerequisites

Before starting, make sure you have:
  • Node.js 18 or higher
  • A Composio account with an active API key
  • An OpenAI API key
  • Basic familiarity with TypeScript

Getting API Keys for OpenAI and Composio

OpenAI API Key
  • Go to the OpenAI dashboard and create an API key.
  • You need credits or a connected billing setup to use the models.
  • Store the key somewhere safe.
Composio API Key
  • Log in to the Composio dashboard.
  • Go to Settings and copy your API key.
  • This key lets your Mastra agent talk to Composio and reach Salesforce through MCP.

Install dependencies

bash
npm install @composio/core @mastra/core @mastra/mcp @ai-sdk/openai dotenv

Install the required packages.

What's happening:

  • @composio/core is the Composio SDK for creating MCP sessions
  • @mastra/core provides the Agent class
  • @mastra/mcp is Mastra's MCP client
  • @ai-sdk/openai is the model wrapper for OpenAI
  • dotenv loads environment variables from .env

Set up environment variables

bash
COMPOSIO_API_KEY=your_composio_api_key_here
COMPOSIO_USER_ID=your_user_id_here
OPENAI_API_KEY=your_openai_api_key_here

Create a .env file in your project root.

What's happening:

  • COMPOSIO_API_KEY authenticates your requests to Composio
  • COMPOSIO_USER_ID tells Composio which user this session belongs to
  • OPENAI_API_KEY lets the Mastra agent call OpenAI models

Import libraries and validate environment

typescript
import "dotenv/config";
import { openai } from "@ai-sdk/openai";
import { Agent } from "@mastra/core/agent";
import { MCPClient } from "@mastra/mcp";
import { Composio } from "@composio/core";
import * as readline from "readline";

import type { AiMessageType } from "@mastra/core/agent";

const openaiAPIKey = process.env.OPENAI_API_KEY;
const composioAPIKey = process.env.COMPOSIO_API_KEY;
const composioUserID = process.env.COMPOSIO_USER_ID;

if (!openaiAPIKey) throw new Error("OPENAI_API_KEY is not set");
if (!composioAPIKey) throw new Error("COMPOSIO_API_KEY is not set");
if (!composioUserID) throw new Error("COMPOSIO_USER_ID is not set");

const composio = new Composio({
  apiKey: composioAPIKey as string,
});
What's happening:
  • dotenv/config auto loads your .env so process.env.* is available
  • openai gives you a Mastra compatible model wrapper
  • Agent is the Mastra agent that will call tools and produce answers
  • MCPClient connects Mastra to your Composio MCP server
  • Composio is used to create a Tool Router session

Create a Tool Router session for Salesforce

typescript
async function main() {
  const session = await composio.create(
    composioUserID as string,
    {
      toolkits: ["salesforce"],
    },
  );

  const composioMCPUrl = session.mcp.url;
  console.log("Salesforce MCP URL:", composioMCPUrl);
What's happening:
  • create spins up a short-lived MCP HTTP endpoint for this user
  • The toolkits array contains "salesforce" for Salesforce access
  • session.mcp.url is the MCP URL that Mastra's MCPClient will connect to

Configure Mastra MCP client and fetch tools

typescript
const mcpClient = new MCPClient({
    id: composioUserID as string,
    servers: {
      nasdaq: {
        url: new URL(composioMCPUrl),
        requestInit: {
          headers: session.mcp.headers,
        },
      },
    },
    timeout: 30_000,
  });

console.log("Fetching MCP tools from Composio...");
const composioTools = await mcpClient.getTools();
console.log("Number of tools:", Object.keys(composioTools).length);
What's happening:
  • MCPClient takes an id for this client and a list of MCP servers
  • The headers property includes the x-api-key for authentication
  • getTools fetches the tool definitions exposed by the Salesforce toolkit

Create the Mastra agent

typescript
const agent = new Agent({
    name: "salesforce-mastra-agent",
    instructions: "You are an AI agent with Salesforce tools via Composio.",
    model: "openai/gpt-5",
  });
What's happening:
  • Agent is the core Mastra agent
  • name is just an identifier for logging and debugging
  • instructions guide the agent to use tools instead of only answering in natural language
  • model uses openai("gpt-5") to configure the underlying LLM

Set up interactive chat interface

typescript
let messages: AiMessageType[] = [];

console.log("Chat started! Type 'exit' or 'quit' to end.\n");

const rl = readline.createInterface({
  input: process.stdin,
  output: process.stdout,
  prompt: "> ",
});

rl.prompt();

rl.on("line", async (userInput: string) => {
  const trimmedInput = userInput.trim();

  if (["exit", "quit", "bye"].includes(trimmedInput.toLowerCase())) {
    console.log("\nGoodbye!");
    rl.close();
    process.exit(0);
  }

  if (!trimmedInput) {
    rl.prompt();
    return;
  }

  messages.push({
    id: crypto.randomUUID(),
    role: "user",
    content: trimmedInput,
  });

  console.log("\nAgent is thinking...\n");

  try {
    const response = await agent.generate(messages, {
      toolsets: {
        salesforce: composioTools,
      },
      maxSteps: 8,
    });

    const { text } = response;

    if (text && text.trim().length > 0) {
      console.log(`Agent: ${text}\n`);
        messages.push({
          id: crypto.randomUUID(),
          role: "assistant",
          content: text,
        });
      }
    } catch (error) {
      console.error("\nError:", error);
    }

    rl.prompt();
  });

  rl.on("close", async () => {
    console.log("\nSession ended.");
    await mcpClient.disconnect();
    process.exit(0);
  });
}

main().catch((err) => {
  console.error("Fatal error:", err);
  process.exit(1);
});
What's happening:
  • messages keeps the full conversation history in Mastra's expected format
  • agent.generate runs the agent with conversation history and Salesforce toolsets
  • maxSteps limits how many tool calls the agent can take in a single run
  • onStepFinish is a hook that prints intermediate steps for debugging

Complete Code

Here's the complete code to get you started with Salesforce and Mastra AI:

typescript
import "dotenv/config";
import { openai } from "@ai-sdk/openai";
import { Agent } from "@mastra/core/agent";
import { MCPClient } from "@mastra/mcp";
import { Composio } from "@composio/core";
import * as readline from "readline";

import type { AiMessageType } from "@mastra/core/agent";

const openaiAPIKey = process.env.OPENAI_API_KEY;
const composioAPIKey = process.env.COMPOSIO_API_KEY;
const composioUserID = process.env.COMPOSIO_USER_ID;

if (!openaiAPIKey) throw new Error("OPENAI_API_KEY is not set");
if (!composioAPIKey) throw new Error("COMPOSIO_API_KEY is not set");
if (!composioUserID) throw new Error("COMPOSIO_USER_ID is not set");

const composio = new Composio({ apiKey: composioAPIKey as string });

async function main() {
  const session = await composio.create(composioUserID as string, {
    toolkits: ["salesforce"],
  });

  const composioMCPUrl = session.mcp.url;

  const mcpClient = new MCPClient({
    id: composioUserID as string,
    servers: {
      salesforce: {
        url: new URL(composioMCPUrl),
        requestInit: {
          headers: session.mcp.headers,
        },
      },
    },
    timeout: 30_000,
  });

  const composioTools = await mcpClient.getTools();

  const agent = new Agent({
    name: "salesforce-mastra-agent",
    instructions: "You are an AI agent with Salesforce tools via Composio.",
    model: "openai/gpt-5",
  });

  let messages: AiMessageType[] = [];

  const rl = readline.createInterface({
    input: process.stdin,
    output: process.stdout,
    prompt: "> ",
  });

  rl.prompt();

  rl.on("line", async (input: string) => {
    const trimmed = input.trim();
    if (["exit", "quit"].includes(trimmed.toLowerCase())) {
      rl.close();
      return;
    }

    messages.push({ id: crypto.randomUUID(), role: "user", content: trimmed });

    const { text } = await agent.generate(messages, {
      toolsets: { salesforce: composioTools },
      maxSteps: 8,
    });

    if (text) {
      console.log(`Agent: ${text}\n`);
      messages.push({ id: crypto.randomUUID(), role: "assistant", content: text });
    }

    rl.prompt();
  });

  rl.on("close", async () => {
    await mcpClient.disconnect();
    process.exit(0);
  });
}

main();

Conclusion

You've built a Mastra AI agent that can interact with Salesforce through Composio's Tool Router. You can extend this further by:
  • Adding other toolkits like Gmail, Slack, or GitHub
  • Building a web-based chat interface around this agent
  • Using multiple MCP endpoints to enable cross-app workflows

How to build Salesforce MCP Agent with another framework

FAQ

What are the differences in Tool Router MCP and Salesforce MCP?

With a standalone Salesforce MCP server, the agents and LLMs can only access a fixed set of Salesforce tools tied to that server. However, with the Composio Tool Router, agents can dynamically load tools from Salesforce and many other apps based on the task at hand, all through a single MCP endpoint.

Can I use Tool Router MCP with Mastra AI?

Yes, you can. Mastra AI fully supports MCP integration. You get structured tool calling, message history handling, and model orchestration while Tool Router takes care of discovering and serving the right Salesforce tools.

Can I manage the permissions and scopes for Salesforce while using Tool Router?

Yes, absolutely. You can configure which Salesforce scopes and actions are allowed when connecting your account to Composio. You can also bring your own OAuth credentials or API configuration so you keep full control over what the agent can do.

How safe is my data with Composio Tool Router?

All sensitive data such as tokens, keys, and configuration is fully encrypted at rest and in transit. Composio is SOC 2 Type 2 compliant and follows strict security practices so your Salesforce data and credentials are handled as safely as possible.

Used by agents from

Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai
Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai
Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai

Never worry about agent reliability

We handle tool reliability, observability, and security so you never have to second-guess an agent action.