The data gateway · for AI assistants

Give assistants access to data. Keep credentials out.

Connect AI assistants to approved enterprise data through one approved MCP server. Credentials stay in MarcoPolo, data work runs outside the model, and every action is logged.

Controlled · Governed · Contextual access

One MCP server. Not one per system.

Connect assistants to enterprise applications and databases through one governed MCP gateway. Assistants see only the connections and actions they’re approved to use, while MarcoPolo handles credentials, execution, results, and audit.

connectionslive
Caller · assistants
ClaudeChatGPTCursor
mcp · approved tools
MarcoPolo gateway

Credentials resolved here · never in model context

approved systems
Salesforcesales_read
Snowflakeanalytics_ro
Postgresapp_read
Jiraissues_read
01

Secure Connections

Assistants discover visible, ready connections and the capabilities policy allows. Credentials stay in MarcoPolo. The model sees the tool, not the token.

Secure connections
workspace · mcplive
# The assistant calls a tool, not the database.▸ tool  marcopolo.run_query→ salesforce_opportunities  18 rows→ jira_issues               64 rows✓ slipped_deals_joined      14 rows▸ tool  marcopolo.preview# The model reads 14 rows · not 82.
02

Managed Database Execution Environment

Assistants can run approved data queries and workspace commands, receive execution status, preview bounded results, and continue from result handles.

Governed workspace
auditlive
tenantacmeassistantclaude.aidelegated useramina@acmetoolrun_queryresultresult#7c21
tool.callmcp

Every assistant call lands in the same trail

req#a91csealed to your SIEM
03

Governance & Auditing

Every tool call carries identity, tenant, connection, execution, result, and effect metadata. Assistant activity lands in the same audit trail as the rest of the gateway.

Trust and governance
What the assistant sees

The gateway answers what the assistant asks.

Give assistants a small set of governed tools instead of a pile of provider-specific integrations. The assistant asks for data work, and MarcoPolo handles access, execution, results, and audit.

  1. Webapp sets scope

    People provision credentials, approve grants, and decide which connections and operations are available.

  2. MCP presents tools

    Assistants receive a small set of tools for discovery, execution, result preview, and guided continuation.

  3. SDK extends flows

    When a team needs product-specific orchestration, the same gateway is available through direct SDK calls.

  4. Audit unifies

    MCP calls create execution and audit records alongside SDK and web app activity.

Scenarios

Run by assistants your teams already use.

Analyst assistant over approved data

An analyst asks an assistant to investigate renewal risk. The assistant uses approved CRM and support connections, runs data work in MarcoPolo, and returns a result-backed summary.

Webapp accessMCP analysisshared audit

Assistant hands off to app workflow

A model finds a useful result through MCP, then a custom application uses the SDK to continue the workflow with the same result handle and tenant context.

MCP resultSDK continuation

Safe recovery after provider failure

A provider failure returns a failed execution with structured recovery guidance, rather than leaving the assistant to guess what happened.

MCP tool callexecution recordnext action
One server, every assistant

When the assistant is the agent, and it still has to answer for itself.

Book a demo
FAQ

What security asks about MCP.

Does MCP replace the SDK?

No. MCP is for assistants. The SDK is for application developers. Both use the same gateway.

Does every provider need a separate MCP server?

No. MarcoPolo MCP sits above the connection layer, so assistants use one governed tool surface across approved systems.

Can MCP tools manage credentials?

Credential setup and sharing are better handled through the web app or explicit SDK workflows. MCP should expose the runtime capabilities that policy allows.

Expose the data gateway to assistants.

Give MCP-compatible clients governed tools for approved connections, managed data execution, and auditable results.