Who this is for: Brand administrators evaluating MCP, and integrators wiring MCP clients. End users mostly just complete the Keystone app consent screen.
Who can connect
Scope
Connections receive a single scope:What the AI can see
Every tool call runs as you:- Postgres Row Level Security (tenant, role, partner assignment) applies the same way as in the Keystone app and Gus.
- Reps only see their assigned accounts; brand users see brand-wide data according to their role.
- Keystone does not give the AI a service-role or admin key.
Managing sessions
- Open Settings → MCP connections to list active AI clients and Revoke any of them.
- AI clients that support RFC 7009 can also call the MCP revocation endpoint.
- Turn off Enable MCP (AI clients) in Platform Settings, or drop to Basic, to stop MCP data access for the brand — new logins are blocked and existing sessions fail on the next data tool call.
