What it can do & security
Everything an AI assistant connected to Lead Distro AI can read and change, grouped by area, plus the permission model, rate limits, what it can never do (move money), and how to disconnect an assistant or revoke an API key.
Once connected, you ask the assistant in plain English and it uses tools scoped to your organization. What it can do depends on the permissions you granted.
Permission levels
When you connect an assistant you grant it one or more permission levels, and each level unlocks a group of tools. You can connect a read-only assistant just for reporting, or a full one that also sets things up. The capability groups below are tagged with the level they need.
| Permission | What it unlocks |
|---|---|
| Read & reporting | Look at everything: campaigns, buyers, suppliers, leads, stats, and profit reports. Changes nothing. |
| Manage campaigns & fields | Create and change campaigns, fields, filters, buyers, suppliers, delivery, ping-post, automations, and the Partner Portal. |
| Lead operations | Send $0 test leads, post buyer conversions back, and reconcile lead outcomes. |
Write actions run immediately when you ask for them. There is no separate approval step like the in-app assistant has, so review what you are asking for before you send it.
What you can do
Everything the assistant can do, grouped by area. The Needs column is the permission level each capability requires (see above). Read is view-only; Manage and Lead ops make changes.
| Area | You can ask it to | Needs | Example |
|---|---|---|---|
| Reports & insights | List and inspect campaigns, buyers, and suppliers | Read | "List my active campaigns." |
| Reports & insights | Pull lead counts, revenue, cost, and profit for any date range | Read | "What was my profit last week?" |
| Reports & insights | Break leads down by campaign, buyer, supplier, status, or state | Read | "Break down last month's leads by state." |
| Reports & insights | Review a campaign's full P&L with per-buyer and per-supplier detail | Read | "How is Auto Accident doing, by buyer?" |
| Reports & insights | List or open individual leads (contact details stay hidden unless you ask) | Read | "Show me yesterday's rejected leads." |
| Reports & insights | Explain why a lead was routed the way it was | Read | "Why did this lead go to Acme?" |
| Reports & insights | Check setup progress, or get the post instructions a supplier needs | Read | "Give Acme the post spec for Solar." |
| Campaigns & fields | Create a campaign or change its settings | Manage | "Create a campaign called Auto Accident." |
| Campaigns & fields | Add lead fields, or rewrite the whole field list | Manage | "Add a required phone field." |
| Campaigns & fields | Set inbound filters that accept or reject incoming leads | Manage | "Reject leads from outside California." |
| Campaigns & fields | Turn a campaign into a ping-post exchange | Manage | "Make Solar ping-post with a 20% margin." |
| Buyers | Create a buyer or update its details | Manage | "Add a buyer called Acme." |
| Buyers | Add a buyer to a campaign with price, priority, caps, and state filters | Manage | "Add Acme to Solar at $40, 50 a day, CA only." |
| Buyers | Set delivery (webhook, email, Google Sheets, SMS, GoHighLevel) and which fields to send | Manage | "Deliver to Acme by webhook with name and phone." |
| Buyers | Pause, activate, or change pricing, caps, and billing model (per lead or per conversion) | Manage | "Switch Acme to pay only on conversion." |
| Buyers | Configure a buyer's real-time bid (ping) in a ping-post campaign | Manage | "Set Acme's ping endpoint and bid field." |
| Suppliers | Create a supplier or update its details | Manage | "Add a supplier called FB Ads." |
| Suppliers | Add a supplier to a campaign with a cost per lead and caps | Manage | "Add FB Ads to Solar at $12 per lead." |
| Suppliers | Set how cost is calculated (flat, variable, ad-account spend, or revenue share) | Manage | "Pay FB Ads 30% of each lead's revenue." |
| Suppliers | Pause, resume, or re-cap intake from a supplier | Manage | "Cap FB Ads at 200 leads a day." |
| Automations | Set up a rule on lead events that sends a webhook, email, Slack, or Google Sheets row | Manage | "Slack me when a lead is accepted." |
| Partner Portal | Turn on the Partner Portal for a buyer | Manage | "Enable the portal for Acme." |
| Partner Portal | Add or invite portal members, or see who already has access | Manage | "Invite ops@acme.com to Acme's portal." |
| Partner Portal | Set the portal's return policy | Manage | "Let Acme request returns within 7 days." |
| Testing & outcomes | Send a $0 test lead to confirm routing and delivery work | Lead ops | "Send a test lead through Solar." |
| Testing & outcomes | Run a $0 ping-post dry run to see every buyer's bid | Lead ops | "Test the ping-post exchange on Solar." |
| Testing & outcomes | Post a buyer's conversion back, or mark a delivered lead not qualified | Lead ops | "Mark lead |
| LeadProsper import | Preview what would be migrated, changing nothing | Read | "Preview a LeadProsper import." |
| LeadProsper import | Run the import after you review the plan (buyers arrive paused) | Manage | "Go ahead and import it." |
What it can never do
No matter how you connect, the assistant cannot move money. It cannot charge a buyer's card, refund a wallet, or send or void an invoice. Those billing actions are deliberately left out. An assistant also cannot do anything outside the one organization it is connected to.
Rate limits
Each connection is limited to 120 tool calls per minute, with a tighter cap of 30 write actions per minute. If you hit a limit, the assistant gets a clear message telling it how many seconds to wait, then it can continue. The limits are generous for normal use and exist to stop a runaway loop.
Disconnect or revoke access
Browser sign-in (Claude.ai, desktop, or Claude Code): go to Settings, then API Keys, and find the Connected AI assistants card. Click Revoke next to the assistant you want to disconnect. It loses access right away and would have to be authorized again.
API key: go to Settings, then API Keys, and click Revoke on any key. The key stops working within a minute. Revoke a key the moment a teammate leaves or you suspect it has leaked, then create a new one.
Frequently Asked Questions
Is it safe to let an AI assistant manage my account?
What can the assistant not do?
Which AI assistants can connect to Lead Distro AI?
How do I disconnect an assistant?
Related Articles
If you have any questions, send us an email at support@leaddistro.ai