Permissions and Security
Understand authorization, confirmations, and data handling for the Stackless MCP server.
Permissions and confirmation
Stackless checks authorization for every tool call. The MCP server only exposes data and operations your signed-in user is permitted to access. Read and write operations are identified separately. Tools that can make consequential changes may require confirmation before Stackless runs them.
Review generated queries, model changes, dashboards, and other write actions before approving them. AI agents can make mistakes, so verify important results against the underlying Stackless asset.
Data handling
When you use the MCP server, your agent or client sends the tool request and its arguments to Stackless. Stackless returns the requested tool result to that client. The MCP connection does not give the client unrestricted access to your warehouse. Stackless continues to enforce workspace role-based access, ownership, and audit controls.
Do not use the MCP server for data that your organization prohibits from being shared with its approved AI provider. Your use of the agent or client is also subject to your organization's policies and that provider's terms. See the Stackless Privacy Notice for Stackless data-processing information.