Per-user tokens
Every MCP connection has a human owner.
Ask a question, make a decision and take an action — without giving the agent more access than the person who connected it.
The in-app assistant and approved MCP clients see the same permissioned tools and records. The model endpoint and provider are configurable per workspace.
Agents load maintained, versioned skills before non-trivial work. Unclear matches return candidates. Ambiguous writes stop and ask rather than guessing.
The agent uses the same permission-aware services as the product UI, so it can research, draft and update without creating a parallel source of truth.
Each MCP token belongs to one user and inherits that user’s tenant, role, business-unit and commercial scope. Writes produce normal audit evidence.
Every MCP connection has a human owner.
The token never widens the connecting user’s access.
Critical and ambiguous writes stop for review.
Agent actions appear in the same history as UI actions.
Connect Claude Desktop, Cursor or Copilot Studio to Genedar. In the walkthrough, we set up a user-scoped connection, let the agent complete a controlled task and show the full audit trail.