access-control
36 Dtwo policies tagged "access-control", including Box: Role-Gated Writes (Read-Only Default), Databricks Default-Deny Unknown Tools. Browse by what the control does rather than which app it targets.
On this page
BigQuery
Box
Confluence
Databricks
Databricks Default-Deny Unknown ToolsPins an allowlist of the exact Databricks tool names your team audited and denies every other tool name on the Databricks MCP server(s).Databricks: Role-Gate Compute & Job ControlThe community JustTryAI/databricks-mcp-server exposes cluster and job control — create cluster, start cluster, terminate cluster, run job, and export…
Glean
Fence Glean Search by DatasourceGlean's search tool fans out across every system the tenant has indexed (Drive, Confluence, Slack, Jira, Gmail/Outlook, GitHub, Salesforce, Gong, HR…Glean Default-Deny Unknown ToolsPins a per-tenant allowlist of the verified built-in read tools on the Glean managed remote MCP server and denies every other tool suffix on the Glean server…Glean: Gate Memory Writes (Read-Only Default)Gates mutating calls to Glean's long-term memory surface — the built-in tool exposed as memory (and as read memory in Glean's own client guide).
Gmail
HubSpot
HubSpot Block Deal ClosureBlocks HubSpot CRM-object calls that move a deal into a closed stage (closedwon or closedlost). Both create and update requests are inspected.HubSpot Protect AssociationsBlocks HubSpot CRM-object calls that create or change associations between objects (deal↔company, contact↔company, etc.).HubSpot Protect Deal OwnerBlocks HubSpot CRM-object update calls that set or change a deal's owner.HubSpot Protect Lifecycle StageBlocks HubSpot CRM-object calls that set or change a contact's lifecycle stage.HubSpot Read-OnlyMakes the HubSpot connection read-only by blocking the write tool.HubSpot Role-Gate Schema and ConsentSits one privilege tier above hubspot/role-gate-writes: ordinary crm-writers can create and edit CRM records, but two higher-blast-radius write classes are…HubSpot Role-Gate WritesGates every HubSpot write tool behind an IdP group: callers whose JWT groups claim contains crm-writers may create and update CRM records; everyone else gets…
Jira
JIRA: Deny Sensitive Project Search and ViewKeeps issues that belong to a configurable set of "sensitive" JIRA projects out of read access through the JIRA MCP server.JIRA: Protect Sensitive Projects from WritesBlocks write operations against issues that belong to a configurable set of "sensitive" JIRA projects.JIRA: Role-Gated Writes (Read-Only Default)Makes Jira read-only by default on the MCP path.
NetSuite
Notion
Salesforce
Salesforce Deny API Escape HatchesUnconditionally denies the raw-code and raw-API tools exposed by the community Salesforce MCP servers — tools that bypass every object- and argument-level…Salesforce Guard Opportunity Pipeline FieldsKeeps revenue-pipeline moves human-approved.Salesforce Protect Contact FieldsBlocks Salesforce Contact updates that modify protected fields — ownership, account linkage, contact PII, name, and consent flags.Salesforce Query AllowlistRestricts Salesforce SOQL queries so only Account, Contact, and Opportunity records can be retrieved.Salesforce Read-Only AccessRestricts the Salesforce MCP server to read-only access.Salesforce Role-Gated WritesThe PF-12 least-privilege baseline for Salesforce.
ServiceNow
Slack
Slack Role-Gate WritesGates every Slack write-class tool behind an IdP group: callers whose JWT groups claim contains slack-writers may send and schedule messages, add or remove…Slack: Deny Channel CreationBlocks Slack channel-creation tool calls at ingress. Every other Slack tool — and every non-Slack tool — passes through untouched.Slack: Deny DM and Private-Conversation Reads and SearchDenies the agent read reach into Slack DMs and private conversations on the paths below — the workspace's highest concentration of PII/PHI (HR issues, health…Slack: Deny Read/Search/Summarize of Sensitive ChannelsBlocks read, search, and summarize operations that target a configurable set of "sensitive" Slack channels.Slack: Deny Sending Direct MessagesBlocks Slack message-write calls whose destination resolves to a direct conversation — a 1:1 DM, a message posted to a user ID (which Slack auto-opens as a…
Snowflake
Snowflake Default-Deny Unknown ToolsPins an allowlist of the exact Snowflake tool names your team audited and denies every other tool name on the Snowflake MCP server(s).Snowflake Deny Composite & Generic ToolsDenies the opaque composite and generic passthrough tools on the Snowflake-managed MCP server whose execution the gateway cannot inspect one SQL statement at…