Use Workday with AI via MCP
In HR and finance, Workday is one of the few vendors with official remote MCP access: according to its own announcements, the Agent Gateway exposes MCP endpoints for your own tenant. It was announced for early adopter customers by the end of 2025 – check availability for your tenant with your Workday contact.
What is Workday?
Workday is a cloud suite from Workday Inc. for human capital management and finance processes. It covers employee master data, organizational structures, talent and compensation processes, payroll connectivity and analytics; in the DACH region it is mainly found in internationally operating groups and large enterprises.
With the Agent System of Record and the Agent Gateway it contains, Workday has built a dedicated layer for running AI agents. For customers this means that assistant access to HR and finance data is meant to run through a centrally governed channel rather than improvised interfaces.
Connection at a Glance
- MCP server
- Official (Workday Agent Gateway), remote
- Transport
- Streamable HTTP
- Authentication
- Per Workday announcements OAuth 2.1 / mTLS, authorization in the signed-in user's context
- Operating model
- SaaS, endpoints tenant-specific per announcement
- Availability
- Announced for early adopter customers by the end of 2025 – check enablement per tenant
- Traceability
- Logging of agent calls per Workday announcements
How to Connect Workday to CompanyGPT
According to its own announcements, Workday provides MCP endpoints via the Agent Gateway, reachable over streamable HTTP. The endpoints are said to be tenant-specific – no general public address is documented. Workday makes the technical details available to customers through its community documentation; they are not publicly accessible.
The Agent Gateway was announced for early adopter customers by the end of 2025. Whether and to what extent it is already enabled for your tenant is therefore the first thing to clarify with your Workday contact – it is the opening step of every integration project. Once access is available, CompanyGPT connects directly to the endpoint; no additional third-party infrastructure is required.
For security, Workday’s announcements name OAuth 2.1 and mTLS as well as authorization at the level of the signed-in user: tool results are meant to stay scoped to that user’s Workday permissions, and calls to be logged. Which of these apply specifically to your tenant is something we verify together with you against the Workday documentation. In CompanyGPT, your administrators additionally decide by role and group which teams may use the integration at all. If the Agent Gateway is not yet available, the Workday REST/SOAP APIs and RaaS reports are the usual interim route.
Typical Use Cases
How AI agents in CompanyGPT work with Workday
Self-service for HR questions
Employees and managers resolve questions about absences, organizational assignment or approval status in chat – always within the scope of their own Workday permissions.
Prepare reporting faster
HR and finance teams have Workday figures summarized and prepared for management meetings without exporting every report by hand.
Follow processes through
For questions about approvals, the assistant shows where a case currently stands and which step comes next.
Frequently Asked Questions
Workday and AI – the most important answers
Does Workday have an official MCP server?
Yes. According to its own announcements, Workday provides MCP endpoints via the Agent Gateway, which is part of the Agent System of Record. The endpoints are said to be tenant-specific; Workday makes the technical details available to customers through its community documentation.
Is access available to every customer?
Not automatically. Workday announced the Agent Gateway for early adopter customers by the end of 2025. Whether your tenant is already enabled, and which tools are available, is something to confirm with your Workday contact.
How is the connection secured?
Workday's announcements name OAuth 2.1 combined with mTLS, plus authorization in the context of the signed-in user, so an agent only receives data that this user is allowed to see in Workday. The binding details are provided by Workday to customers through its community documentation; we review them with you during the project.
What is possible while the Agent Gateway is not enabled?
In that case we connect Workday via the REST/SOAP APIs or RaaS reports and expose the required calls as MCP tools. Once the Agent Gateway becomes available, you can switch to the official route.
Does the data stay within our control?
CompanyGPT runs in your own cloud tenant and communicates directly with the Workday endpoint, without intermediaries. Processing inside Workday itself remains governed by your existing contract with the vendor.
Related Integrations
HR & People
Workday and Your AI – GDPR-Compliant with CompanyGPT
CompanyGPT is the enterprise AI assistant in your own cloud tenant: all relevant AI models, your company data and integrations like Workday – centrally managed, with roles and permissions. We set up the connection together with you.
Workday is a trademark of its respective owner (Workday Inc.). Its mention describes compatibility and does not imply any partnership or endorsement. Availability and scope of the connection depend on the respective vendor.
