Skip to main content

How to Enable

MCP access requires organisation entitlement, a per-user role permission, and (for almost all tools) Raw Data API Access. Complete the steps below before connecting an MCP host.

1. Enable MCP Access​

MCP Access is an OpenSolar service. Organisation admins enable it from the OpenSolar app:

  1. Navigate to Control → Integrations → Integrations & Services → MCP Access
  2. Enable MCP Access for your organisation

Once active, the Control → Integrations → MCP menu appears. From there you can review OAuth sessions and usage.

note

Without MCP Access, OAuth consent and introspection fail with an MCP access required error.

2. Grant the role permission​

Per-user access is controlled by the MCP Access role permission (View):

  1. Navigate to Control → Company → Team → Custom Roles
  2. Edit the permissions role for users who should connect MCP
  3. Enable MCP Access (view)

The Admin role template includes this permission by default. Other templates do not.

Users without the permission can authenticate to OpenSolar but cannot obtain an active MCP grant.

3. Enable Raw Data API Access​

Every MCP tool that calls OpenSolar API — that is, all tools except whoami — requires the organisation to have Raw Data API Access.

  1. Navigate to Control → Integrations → Integrations & Services
  2. Enable Raw Data API Access
  3. Ensure sufficient wallet balance for per-project charges

Without Raw Data API Access, OAuth can still succeed, but tool calls return MCP_0011 with recovery guidance. See API Access Plans and API Access FAQs.

tip

If you already have Raw Data API Access for REST integrations, no extra service is required for MCP beyond MCP Access.

4. Connect your MCP host​

After entitlement and permissions are in place:

  1. Add the production MCP URL in your host (see Connect with Clients)
  2. Complete OAuth login on the OpenSolar login page
  3. Select your organisation (if you belong to more than one) and consent scopes: READ, WRITE, and/or DELETE

Checklist​

RequirementWhere to configureRequired for
MCP AccessControl → Integrations → Integrations & Services → MCP AccessConnecting MCP at all
Role permission MCP Access (view)Control → Company → Team → Custom RolesUser-level connect/use
OAuth scopesConsent screen during loginTool invoke by scope
Raw Data API AccessControl → Integrations → Integrations & ServicesAll tools except whoami

Managing sessions​

Organisation admins can list and revoke MCP OAuth sessions under Control → Integrations → MCP. Each row shows the authorised user and granted scopes (READ / WRITE / DELETE). Non-admin pros see only sessions they authorised.