Hi everyone,
I'm evaluating the Oracle Analytics Cloud MCP Server and have a question regarding security and data exposure.
My concern is understanding exactly what information is exposed to an external AI client (Claude Desktop or ChatGPT) when it connects to OAC through the MCP Server.
For example:
- Does the AI only receive the final query results returned by Oracle Analytics?
- Or can it also discover metadata such as subject areas, semantic models, measures, columns, descriptions, and other business definitions?
- Is it possible for the AI to retrieve raw row-level data if the user has permission, or is access limited to aggregated query results?
- What are the recommended best practices for organizations that want to use MCP while ensuring sensitive business data remains protected?
I'm trying to understand the security model and what information is actually shared with the AI versus what remains inside Oracle Analytics.
Thank you!