Database-enforced isolation Available now
PostgreSQL row-level security on every table. Tenant isolation is enforced by the database, not only by application code.
A shared memory is only useful if people trust it. This page separates plainly what is built today from what is still on the roadmap.
These are built and running in our live pilot.
PostgreSQL row-level security on every table. Tenant isolation is enforced by the database, not only by application code.
A permission service checks every request. Search results are re-checked against permissions one by one before they are returned.
AI apps get the smaller of the person's rights and a time-limited grant. An agent never has more rights than its user.
Every allow and deny is recorded with who, where, which app and which model, and written in the same transaction as the change itself.
A client's memory is never returned to another client's work. Labels mark memory internal, restricted (named people only, bots never read) or external_ok.
Memory is returned labelled as data. Text that looks like instructions is flagged and cannot be bulk-approved.
OAuth 2.1 sign-in. People use a password plus an authenticator code. Access tokens are short-lived.
Suspend an AI app or bot immediately.
Every update keeps the previous version. Daily backups are encrypted.
cMCP runs where you decide. In a pilot we run it for you in your cloud, or you self-host it on your premises. Fact extraction uses a small model running on your own server, so nothing needs to leave your infrastructure.
Connectors only read, and only from the sources you choose. By design, cMCP never writes into outside systems.
We would rather you hear this from us. These items are planned and are not part of cMCP today.
| Planned control | Status |
|---|---|
| SSO with Microsoft or Google, and SCIM provisioning | Roadmap |
| Customer-managed encryption keys (BYOK) | Roadmap |
| PII detection and masking | Roadmap |
| Hash-chained, exportable audit | Roadmap |
| Retention policies per scope | Roadmap |
| Break-glass access with logging | Roadmap |
| Independent penetration test and SOC 2 readiness work | Roadmap |
| Large-scale load testing | Roadmap |
Where we stand. cMCP is a pilot-stage product. It has not been independently audited or penetration tested, and we do not claim any compliance certification. If your security review needs more than that today, tell us what you need and we will say honestly whether the pilot can meet it.
Please email sales@it-labs.in with enough detail to reproduce the issue. We will acknowledge your report, investigate it and keep you informed. Please give us reasonable time to fix a problem before sharing it publicly, and do not access data that is not yours.
Book a session and we will walk through the architecture, the controls above and the gaps.