Authentication

Authentication

OAuth

DealCloud MCP uses OAuth to authenticate, letting AI assistants connect on behalf of an individual user. The user signs in through DealCloud to authorize the assistant, and the MCP server then responds in the context of that signed-in user. This keeps access scoped to each user's permissions and attributable for auditing.

User Data Access Permissions

The MCP layer applies the DealCloud user permission model. A user can access only the data they are permissioned for, the same as through the web portal or the API. If a user lacks access to specific objects, fields, or records, those restrictions apply to their MCP connection as well.

Client Authentication

AI clients connect using OAuth 2.0. DealCloud MCP maintains a set of pre-registered client integrations — only AI clients with a pre-registered redirect URI can connect. Supported clients use OAuth server metadata discovery to establish the connection without requiring manual credential configuration. For client-specific setup and compatibility details, see AI Clients.