Blog Log in Start free trial

Blog / Agents

Don't make your AI agent read your whole inbox

· 4 min read · También en español

Short answer: let a small, dedicated sorter label every email first, and point your AI agent only at the labels that need judgment, like Urgent and Needs reply. The agent spends its tokens and its context on the few emails where it actually helps, and most of your mail never reaches the model at all.

The problem with "just ask the agent to check my email"

An agent that triages your inbox has to read each email to decide whether it matters. That sounds cheap until you count:

A rough example

These numbers are an illustration, not a measurement. Change them to match your inbox:

Per day
Emails arriving120
Share that needs no action (newsletters, receipts, notifications, promos)about 70%
Average size as textabout 600 tokens
Tokens read just to triageabout 72,000
…of which on email you'd never act onabout 50,000

Across a month that is well over a million tokens of reading done only to decide what to ignore, and it happens again every time the agent starts fresh.

Split the job in two

Sorting and thinking are different jobs:

  1. Sorting is one narrow decision, repeated all day: which of my categories is this? A small classifier that can only answer with one of your categories does it quickly, in the same way every time.
  2. Thinking (writing the reply, deciding what to do, summarizing a thread) is where a large model earns its cost.

So sort first, then hand the agent a short list. Instead of "read my inbox", the instruction becomes "read what's in Needs reply and draft answers". The agent sees five emails, not a hundred and twenty.

There's a privacy benefit too. When an agent triages everything, every email body goes to its model provider. When it only reads Needs reply, the rest of your mail never leaves your inbox and the sorter.

How to set this up with MailTag today

MailTag sorts every new email into one of your categories every 5 minutes, right inside the inbox you already use:

The sorting runs on our own servers in the EU. Email content is never stored and never sent to any other company, and MailTag can't send or delete email.

Connect your agent to MailTag's MCP server

On every plan, agents such as Claude or ChatGPT can connect to MailTag directly through its MCP server and ask for "everything in Needs reply since yesterday" without reading the rest of the inbox. You decide, per agent, what it can see and do:

If you turn on MailTag's safety check, emails that look like phishing or carry hidden instructions for AI agents come marked, and you can have them hidden from the agent.

FAQ

Does MailTag replace my AI agent?

No. MailTag sorts; your agent thinks. Used together, the agent reads a handful of emails that need it instead of your whole inbox.

Is a small classifier accurate enough to trust?

It always picks one of your categories and gives each decision a confidence score. When a sender is always the same kind of email, a rule per sender or domain makes it exact.

Can my agent use MailTag right now?

Yes. On any plan it can connect to the MCP server with the permissions you choose. It can also use the labels (Gmail) or folders (other providers) MailTag creates.

Does MailTag send my email to OpenAI or another AI company?

No. Sorting happens on our own servers in the EU, content is never stored, and no outside company receives your email.

Your inbox, sorted on its own. Privately.7 days free · no card
Start free →

Keep reading

Agents · 30 Sept 2026

Give Claude, ChatGPT or Cursor safe access to email

Connect an AI agent to your email through MailTag's MCP server and choose what it sees: which mailboxes, categories and dates, and nothing more.

Read →
Agents · 30 Sept 2026

Email prompt injection: how one email hijacks an AI agent

An email can hide instructions your AI assistant follows. How it works, real cases in Copilot and Gemini, and how to protect an agent that reads mail.

Read →