Skip to main content

MCP User Access Management

Release Notes | August 30th 2026

Written by Zvi Cohen Zion

Key Takeaways

  • See Who's Using MCP in Your Account: A new MCP Users list in Account Manager shows everyone connected to Craft.io through their AI tool, what they can do, how many spaces they can reach, and when they last used it.

  • Edit User Permissions, Scope, and Access: Change a user’s permission level, narrow them to specific spaces, or block their MCP access, all effective on their next AI request.


See Who's Using MCP in Your Account

Until now, account owners and admins had no way to see who in their account was using MCP. Users could connect Craft.io to their AI tool themselves, but there was no screen showing which of them had done it, what that access could do, or which spaces it reached.

Account Manager now has an MCP Users list, with a count of how many users currently have MCP access. Each row shows the user, whether their access is active or blocked, their permission level, and their access scope to workspaces, portfolios, and feedback portals. Alongside, account owners and admins can see the date the access was created and the last time it was used.

To review who has MCP access, open Account Manager > MCP Users.


Edit User Permissions, Scope, and Access

Previously, a user’s MCP access was fixed based on their role at the time of connection. There was no way to adjust permissions, limit access to specific spaces, or temporarily disable the AI tool.

Now, account owners and admins can manage access via the “Edit MCP Access” menu. This allows downgrading permissions to read-only or restricting the scope from all user spaces to selected ones only.

Furthermore, admins can instantly block MCP access, stopping future AI requests without affecting the user's standard Craft.io experience. Access can be restored later without requiring the user to re-authenticate. All changes take effect on the very next AI request.

Did this answer your question?