Rheos.

MCP Privacy Notice

Effective Date: 16 July 2026

1. Scope and Current Status

This notice describes how data can flow through the Rheos Model Context Protocol (MCP) server when an authorised AI-assistant client (such as Claude, ChatGPT, Cursor or another MCP-compatible client) calls Rheos tools on a user's behalf. It supplements the main Rheos Privacy Policy, which continues to apply to Rheos account, workspace, billing, AI and product data.

Preview status: the Rheos MCP server is currently a preview capability, not a generally available public product. Access is limited while OAuth sign-in, plan metering and customer controls are finalised. This notice describes the implementation as it stands and will be updated before any general public launch.

Controller: Rheos App Ltd, company number 17105158, 60 Farm Road, Beeston, Nottingham, England, NG9 5DA. Contact: archie@rheos.app.

2. What the MCP Server Does

The MCP server exposes scoped tools that can read or change data in an authorised Rheos organisation. Depending on the tool and granted scope, this can include:

  • brand metadata, identity documents, source documents and website-source material;
  • post drafts, schedules, attached assets, and generated or uploaded visuals;
  • analytics, credit or usage information, and connected-platform status;
  • customer-requested website scraping or source import;
  • AI text or image generation; and
  • create, update, schedule or publish actions.

The server does not preload an entire account into a client. A tool returns the information used for that request, subject to organisation and scope checks. A client with write or publish access can change workspace data or cause content to be published, so review both the client and the requested scope carefully before authorising it.

3. Authentication and Authorisation

A. Rheos API Keys

  • You can create and revoke a Rheos MCP API key through the dashboard's MCP settings. Revoking a key takes effect immediately.
  • The server authenticates each request with the key and applies its associated organisation and read, write or publish scopes.
  • Keys do not expire automatically: a key continues to provide access according to its scopes until you revoke or delete it.
  • Keys are stored in our database in a retrievable form (masked in list responses, but not hashed). We plan to move to hashed key storage before general availability; until then, treat an MCP API key like a password.

B. OAuth (in rollout)

  • An optional OAuth route uses Auth0 and supports client registration and scoped access. It is being rolled out and is not yet the generally available sign-in method.
  • An OAuth token is validated on each request and bound to a Rheos organisation. Subject identifiers are hashed in our MCP OAuth records.
  • The client manages its copy of the OAuth access or refresh credential under its own security and retention practices; revocation of an OAuth grant happens at the authorisation server.

Whichever method is used, removing an AI assistant from its own interface is not a substitute for revoking its Rheos API key or OAuth authorisation where the credential remains valid.

4. What Data an Authorised Client May Receive or Change

The data returned depends on the selected organisation, tool arguments and scopes. It may include customer content such as brand sources, identity documents, drafts, assets, analytics and platform connection details. A write or publish tool may create content, alter drafts, start AI generation, retrieve a customer-authorised website, or publish to a connected social platform.

The MCP server enforces organisation and scope checks and is not intended to expose raw payment-card details or another organisation's data. Grant the least access needed, review tool actions and generated content, and revoke a credential when the client no longer needs access.

5. The Request Chain and Third Parties

An MCP request can involve two distinct types of third party:

  1. The client you chose. Once your selected AI assistant or MCP client receives Rheos data, that provider handles its copy under its own terms and privacy notice (for example Anthropic's or OpenAI's). Rheos does not control whether that provider retains data or uses it to improve or train its own systems — review the provider's settings and terms before authorising it.
  2. Processors used by Rheos to perform a tool. A generation or import tool may cause Rheos to send the required data to a Rheos processor: Google AI Studio / Gemini for ordinary AI generation; Fal.ai or, on selected paths, Microsoft Azure OpenAI (GPT-Image-2) for image generation; Firecrawl for customer-requested website retrieval; Google Cloud / Firebase for core data and operations; Vercel for hosting; Auth0 where the OAuth route is used; and Sentry for diagnostics when errors occur.

The main Privacy Policy contains the full recipient and subprocessor list. A client you select is not a Rheos subprocessor merely because you ask it to call Rheos.

6. Google API Services User Data & Limited Use

Where an MCP tool is permitted to expose Google-derived customer data, it may return only the data needed for the customer-requested tool action and within the granted Rheos and Google permissions. Active Google access today is Google Drive read-only import and YouTube publishing (youtube.upload, youtube.readonly). Google Search Console, Google Analytics and Site Verification access is rolling out via the dashboard (see the main policy, Section 7) and is not currently exposed through MCP tools. No Gmail access exists.

A customer-selected MCP client that receives Google-derived data processes its copy under its own privacy terms, but Rheos continues to apply Google's restrictions to Rheos's own use and transfers.

Google Limited Use disclosure: Rheos's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

7. Logging, Telemetry and Model Use

Rheos does not promise that MCP request or response payloads are never logged:

  • MCP-triggered AI flows use Rheos's standard AI wrapper, which records usage and can store up to the first 500 characters of serialised input and the first 500 characters of serialised output in per-organisation usage records. Tool arguments or generated content can therefore appear in these snippets.
  • Usage and operational records can include the tool or flow, organisation, timestamp, usage amount, status, latency and diagnostic context needed for billing, metering, abuse prevention and service operation.
  • Sentry and platform logs can receive error and diagnostic context when something fails.
  • As described in Section 3, complete Rheos API keys are currently stored in our database, so Rheos does not claim that it never stores credentials.

Rheos does not use MCP tool-call payloads to train public AI models. Your chosen AI assistant may have its own training or improvement settings, which you should review with that provider.

8. Retention and Deletion

Customer content remains subject to the main Privacy Policy, including the 30-day account-deletion process. MCP API keys and OAuth authorisation records, AI input/output snippets and usage records, diagnostic logs, deletion audit records, and backups are retained according to necessity, security, contractual and legal requirements rather than a fixed published period.

Revoking an API key or OAuth grant stops future authorised calls using that credential, but it does not automatically delete data that a third-party client already received. To address that copy, contact the client provider and use its deletion controls.

9. Security

Rheos applies organisation and scope checks to MCP requests and masks API keys in list responses. Those measures do not remove the risks of giving a third-party client read, write or publish access. Keep keys private, grant minimum scopes, review publish actions, rotate or revoke credentials after any exposure, and remove access when no longer needed.

10. Your Rights and Choices

The rights in the main Privacy Policy apply to personal data processed through MCP, including access, rectification, erasure, restriction, portability, objection, withdrawal of consent where applicable, and the right to complain to the UK ICO.

To stop a client from making future calls, revoke its Rheos API key in the dashboard's MCP settings, or revoke the OAuth authorisation where that method is used. Send privacy requests or complaints to archie@rheos.app.

11. Changes and Public Launch

This notice will be updated before any general public MCP launch to reflect the final authentication methods, client controls, scopes, retention settings, security design and tool surface. Material changes will be notified in accordance with the main Privacy Policy.

12. Contact

For MCP-specific privacy questions or data requests:

Rheos App Ltd

Company number: 17105158

Registered office: 60 Farm Road, Beeston, Nottingham, England, NG9 5DA

Email: archie@rheos.app