The permissions needed for a call

LayerWhat it controlsWho manages it
Identity and user statusWhether you can access MCPHub.Company identity systems and administrators.
Group membershipRoles, scopes, tools and business resources inherited from active groups; multiple groups form a union.MCPHub administrators; the enterprise source owns imported memberships.
Service and tool policyPublished tools and the scope you may request.MCPHub administrators.
Client authorizationAn entry's tools, scopes, resource conditions, expiry, and permission to request writes.You confirm it within administrator-defined limits.
Personal service accountUpstream identity and business permissions.You and the business system.
Individual write approvalWhether this exact target and full arguments may be executed.Authorized reviewers.

One layer does not replace another. Renewing sign-in does not extend client grants, and client authorization cannot bypass upstream business permissions.

Scopes and tool lists

A scope is a permission identifier required by a service. A tool allowlist further limits which tools can be called. For manual configuration, use names supplied by your administrator and repeat --scope as needed.

If manual client add omits the tool list, it freezes the currently eligible tools; it does not keep adding newly discovered tools. The setup wizard requires you to select at least one tool explicitly.

Limit business resources

If a tool has a project argument, /project=project-a limits it to project A. The path is a JSON Pointer into tool arguments; use the tool's actual definition:

mcpbridge client add --profile work --name project-a-read --endpoint database-prod --tool query --resource /project=project-a

Resource conditions added by setup apply to every selected tool. Create separate entries for tools with different parameters, and ask your administrator to confirm fields and allowed values. Client limits cannot widen server-side access.

Read-only access and permission to request writes

A read-only entry cannot request writes. Explicitly enable --allow-write-requests, or confirm write tools in setup, before submitting a write request. Write and unclassified tools still need approval for every operation.

When permissions change

Expiry, revocation, account replacement, or policy changes may reduce catalog and call permissions. Reauthorize and reconnect when prompted. Server-side revocation immediately blocks subsequent admission without waiting for local refresh. Operations already accepted upstream cannot be automatically rolled back.

Independent permission groups

Permissions belong to MCPHub groups. Administrators assign direct memberships or map LDAP/OIDC organization groups by stable ID. Matching names never merge accounts. Effective access shows each direct or mapped source. Enterprise membership expires after 24 hours by default and must be reverified by sign-in or a directory snapshot. Scope derivation saves a snapshot, so publishing new tools does not automatically expand permission groups.