post_v1_sites
BuildSite generates a self-contained, mobile-responsive static site from a natural-language brief and deploys it live in one call.
BuildSite generates a self-contained, mobile-responsive static site from a natural-language brief and deploys it live in one call.
One inference call turns brief (capped at 8 KiB) into a file manifest, which
then runs through the SAME validation, guards and viewport guarantee as a
hand-supplied manifest: index.html required at the root, absolute and
traversal paths rejected, per-file and total size capped, and a mobile
viewport meta tag injected into every HTML document that lacks one. The
generated site is fully inline — no CDNs, no remote fonts or images — so it is
CSP-safe. slug and name are optional: the model's own title is preferred,
and a slug is derived or minted when none is given.
It writes into the SAME org-scoped store as /v1/projects — it ensures a
project (framework static) for the resolved slug and records a deployment —
so this is a second door onto one publish pipeline, not a second copy of
project state. Ordering is the billing contract: the hosting gate runs BEFORE
any inference or upload, so a denied gate generates and uploads NOTHING, and
the debit lands once, only after the site is actually live. The tokens are
billed to the same ledger the hosting fee was reserved against.
Answers 503 when object storage or inference is unconfigured, and 400 when the model's manifest cannot be parsed or fails the guards.
Scope: a validated principal is required (403 without one) and the site is published into THAT principal's org.
| Tool | post_v1_sites |
| Door | https://api.hanzo.ai/v1/mcp |
| Method | tools/call (JSON-RPC 2.0) |
| Arguments | 4 |
| Operation | POST /v1/sites |
| Product | sites |
Arguments
| Field | Type | Required | Default | Description |
|---|---|---|---|---|
brief | string | — | — | — |
model | string | — | — | — |
name | string | — | — | — |
slug | string | — | — | — |
This tool's schema does not declare which fields are required, nor any default, nor any enumerated value set. The columns above are empty because the door publishes nothing there, not because the answer is "none" — where a field is constrained, the constraint is stated in that field's own description.
Call it
A tools/call carries every argument in one flat object — nothing binds to a path or a query string. Every declared argument is shown, because the door marks none of them required.
curl -X POST https://api.hanzo.ai/v1/mcp \
-H "Authorization: Bearer $HANZO_API_KEY" \
-H "Content-Type: application/json" \
-d '{
"jsonrpc": "2.0",
"id": 1,
"method": "tools/call",
"params": {
"name": "post_v1_sites",
"arguments": {
"brief": "<brief>",
"model": "<model>",
"name": "<name>",
"slug": "<slug>"
}
}
}'Values are placeholders derived from each field's declared type. tools/list needs no credential; tools/call does — called without one the door answers HTTP 200 with a JSON-RPC result whose isError is set and whose text says what was missing. How to get a key →
The operation behind it
| Operation | Route | Product | Summary |
|---|---|---|---|
cloud_post_v1_sites | POST /v1/sites | sites | Build a site from a brief and deploy it |
The same capability over plain HTTP is in the sites API reference, on https://api.hanzo.ai.
All 834 tools · The door · API reference
Generated from tools/list on https://api.hanzo.ai/v1/mcp — 834 tools captured 2026-08-01 (this build read the vendored copy; the door was unreachable).
How is this guide?