Browse all guides
All guides
MCP

MCP scopes

Choose simple View and Edit access without granting an MCP client more access than it needs.

6 min readUpdated August 27, 2026

Quick visual guide

Grant only the scopes the connected client needs.

  1. 1

    Choose the client

    Open the correct client tab in Settings > Integrations.

    MCP client tabsClient tab
  2. 2

    Review before approving

    On the authorization screen, read the requested read, write, and generate access.

    MCP setup guide before authorizationReview access
  3. 3

    Reconnect to change scope

    Disconnect and authorize again when the client needs a different scope set.

    MCP connection setup areaReconnect here

Red labels show the exact control to use.

Detailed referenceOpen this for definitions, limits, examples, and troubleshooting.

Review the authorization screen

Tartol opens a focused authorization page with only the client name, workspace selector, View and Edit permissions, and one full-width Authorize connection button. All eligible workspaces and all requested permissions are selected by default. View is required and visibly locked; turn Edit off when the client only needs reporting or research access.

Available scopes

ScopeAllows
tartol:readSearch, fetch, and query permission-visible workspace data.
tartol:writePrepare and execute supported non-generation workspace changes.
tartol:generatePrepare and execute supported credit-spending generation actions.

Scope rules

  • Read is required whenever Write or Generate is requested.
  • The authorization page groups the technical Write and Generate scopes under one simpler Edit switch.
  • Scopes are a ceiling, not a replacement for workspace permissions.
  • All workspaces grants only the eligible workspaces listed when you authorize; reconnect to add a workspace created later.
  • Plan, role, feature, record ownership, and credit checks still happen on each request.
  • Use a separate credential per client or automation so you can revoke it independently.

Practical choices

Use caseRecommended scopes
Reporting or research assistanttartol:read
Organizer that updates boards or recordstartol:read + tartol:write
Creative automationtartol:read + tartol:generate, plus Write only if it also organizes records

Keep learning

Still need help?

Tell us what you were trying to do and what happened.

Contact support
Last updated August 27, 2026