MCP Server

Transparency is central to us at Intric. When an assistant uses an external tool via MCP (Model Context Protocol), specific processes are in place to ensure you have full visibility into what data leaves the platform and where it goes.

The process from your question to a response that includes tool results occurs in an exchange between the Intric platform, the language model selected for the assistant, the MCP server, and the data source(s) the tool uses. Intric always acts as the intermediary — the language model never contacts the MCP server directly.

Step-by-step: How your data is handled

All transfers between Intric and its sub-processors occur over secure, encrypted connections.

Step 1 — User interacts with Intric in the browser

The user writes a message to an assistant that has one or more MCP tools configured.

Data sent to Intric’s server:

  • The user’s message
  • Chat history
  • Any attached files
1 / 7

Data sharing and privacy

To protect your and your organization’s privacy, we apply the principle of data minimization. This means the sub-processor only gets access to the content absolutely necessary to perform the task — no user identity ever leaves your infrastructure.

When using MCP tools there are two separate privacy considerations — data is sent to both the LLM and the MCP server. Intric applies the principle of data minimization in both cases, but it is important to understand that data privacy during MCP calls depends on where the MCP server is hosted.

In the table below, you can see exactly what data is sent to each external service and what is kept completely private.

Sent to external serviceNot sent to external service
  • The user's question and conversation history (to the LLM)
  • Tool definitions — name, description, parameters
  • Tool arguments generated by the language model
  • Results from the data source query
  • Personal data about the user in Intric interacting with the assistant, provided it does not appear in the message to the assistant:

    • Name
    • Email
    • IP address
    • Organization affiliation

If the MCP server is a third-party service, data sent as tool arguments may leave your jurisdiction. What data is actually sent depends on the arguments the LLM generates — these are based on the user’s question and the tool’s parameter definition.

Data retention and deletion

Intric stores conversation history — including tool calls and their results — in the same way as other assistant interactions. Storage happens on Intric’s servers in Sweden.

  • Conversation history including tool calls and results is governed by the assistant’s configured deletion settings
  • The MCP server controls its own storage — Intric has no control over what the external service logs or saves
  • The LLM provider has zero data retention clauses in Intric’s contracts and stores neither prompts nor responses
🔍 Read more in the article Data retention policy for assistants

Metadata about how users interact with assistants is stored for a longer period and is available to administrators.

🔍 Read more in the article Audit log
Updated on