MCP Access
The tenant admin's switch for the MCP server: turn it on or off, and read the endpoint and client ID the Claude connector needs.
Get the tenant's MCP server access
Whether the tenant may use the MCP server, whether its admin has turned it on, and the endpoint URL and client ID to configure the Claude connector with. Every role may read it, so a user can connect their own client.
Turn the MCP server on or off for the tenant
Enabling binds the tenant to this environment's MCP client and needs the MCP entitlement; disabling revokes every client of the tenant and is always allowed. Either takes effect on the MCP server within its binding refresh interval. Idempotent. ADMIN only, audit-logged.