ACP Use Case: MAC Policies and MCP Audit Logs
MCP tool access control with MAC manages the tools each role needs as teams use AI for everyday work. Administrators configure permitted MCP tools and user roles, then review access decisions and execution results. Connected tools can be made available for specific tasks, with access scope and usage history managed as automation grows.
QueryPie ACP’s MCP Access Control (MAC) links tool access policies to user roles. This demo creates an MCP tool access policy, configures a role, and assigns it to a user. It then runs tool requests and checks allowed and denied access alongside execution results in Request Audit, bringing policy configuration and actual usage into the same review.
Workflow
MCP tool access policies
Create access policies for MCP tools and define the scope of permitted tool use.
Role-based user permissions
Associate access policies with roles and assign those roles to users to manage tool permissions.
Access decisions and execution results
Review allowed and denied requests and their execution results in Request Audit to examine policy enforcement and usage history.
More ways to use this workflow
For example, grant marketing teams tools for querying performance data, support teams tools for retrieving information needed to answer customer questions, and operations teams infrastructure inspection tools. By making connected MCP tools available according to each role’s work, teams can build AI workflows for data analysis, support preparation, and operational checks using permitted tools.
Use policies and roles to separate the tools each team needs and automate repeated access decisions. Business teams can expand automation within their scope, while administrators trace actual usage through Request Audit and review access exceptions or necessary permission changes.
