Agent Authentication
Last modified by Eleni Cojocariu on 2026/08/21 12:24
Content
Explanation
When you connect an AI assistant to the MCP server, the assistant authenticates as a real wiki user. Everything the assistant does, it does as that user, with that user's permissions. The assistant can read exactly what your user can read and edit exactly what your user can edit. There is no separate "AI permission" that adds power. The document history records your user as the author of any changes.
Practical consequences
- If your user can edit a space, the assistant can edit that space.
- Rights are the hard boundary. Configuration settings (tool enablement, space filters) can only narrow what the assistant can do below your rights, never widen it.
Cross-wiki reach
When cross-wiki reach is enabled, the assistant can access documents on other wikis in the farm. Access is still governed by your user's rights on those target wikis.