Skip to main content
Version: Next

Security overview

Obot applies controls at the gateway, identity, workload, and device boundaries. Its protection depends on which components a request actually passes through and how the deployment is configured.

BoundaryResponsibility
IdentityConfigure authentication and grant appropriate roles and resource access
GatewayRoute clients through Obot to apply MCP/model access checks and record gateway activity
Hosted codeIsolate packages, containers, and filters on the execution backend
Remote servicesEvaluate upstream authentication and service behavior; Obot does not host that code
User devicesInstall and maintain Sentry hooks for supported auditing/enforcement coverage
Stored dataConfigure field encryption, storage access, retention, exports, and backups

Power User and Power User+ can deploy server code. Treat them as privileged roles; the User Roles security model describes why Docker's host socket is appropriate only for trusted evaluation or single-tenant use.

For production, review Network and workload isolation, Credentials and encryption, and Policy coverage. Application encryption is disabled by default and protects selected fields when enabled, not the entire deployment.

Device enforcement is experimental and has explicit client and failure-mode limitations. Gateway policies do not govern traffic that bypasses the gateway.

The MCP Platform is Obot's unified management interface for deploying, managing, and operating MCP servers. It provides role-based access to server management, registries, audit logs, usage tracking, and platform administration.

For detailed permissions and role definitions, see User Roles.

Roles and Capabilities​

The MCP Platform adapts its navigation and available features based on your assigned role.

Standard User​

Standard Users can deploy and use MCP servers that have been made available to them through an MCP Registry. They can interact with MCP servers via external MCP clients but cannot publish or manage servers.

Power User​

Power Users include all Standard User capabilities and can additionally deploy MCP servers for personal use that are not sourced from an MCP Registry. These servers are only visible to the deploying user. They also have access to audit logs metadata and usage stats for the servers they deploy.

Power User+​

Power Users+ include all Power User capabilities and can additionally publish MCP servers to an MCP Registry for use by other users. They control which users or groups can access the servers they publish.

Admin / Owner​

Admins and Owners have full administrative access to the platform, including system-wide configuration, user management, and gateway administration.

Owners can assign the Owner and Auditor roles; Admins cannot. For more information, see the Auditor Role.

Learn More​