Permissions & Control Levels
MapleMCP separates account permissions from operating-system permissions. You choose which capability groups ChatGPT may use for each enrolled device, and the operating system still decides what the installed agent is allowed to do.
Android
Background connection, device information, apps and links.
MapleMCP can stay connected, report device details, and request that installed apps or supported links open. Without Advanced Control, Android may accept a launch request but refuse to place the destination app in front while MapleMCP is in the background.
Basic + Notification Access.
When you separately enable Android Notification Access, MapleMCP can read the active notifications exposed by Android and control active media sessions such as play, pause, next, and previous. This does not grant general screen control.
Connected + the MapleMCP Accessibility Service.
When you explicitly enable Advanced Control in Android Accessibility settings, MapleMCP can inspect the visible accessibility tree, capture a bounded screenshot, tap and scroll visible controls, use Back/Home/Recents, enter text into selected editable fields, perform coordinate tap/swipe gestures, and more reliably foreground apps and links.
You can turn Notification Access or Advanced Control off at any time in Android Settings. MapleMCP dynamically stops advertising tools that require an operating-system permission when that permission is unavailable.
Windows and Linux
Desktop devices use four independently selectable account capability groups:
Read, write, create, move, inspect, and edit files inside MapleMCP's configured allowed directories.
Search allowed directories for files or content without granting terminal access.
Start commands, interact with running command sessions, inspect processes, and request process termination. Commands can access networks using the operating-system permissions of the MapleMCP user.
Read MapleMCP configuration, system information, usage statistics, recent tool-call metadata, and other diagnostic information.
Least privilege by default
Windows runs the AI-facing MapleMCP agent as the enrolled interactive user rather than as a system administrator. Linux runs the service as the selected non-root Linux user. New Windows and Linux enrollments default file access to that user's home directory unless the local policy is deliberately changed.
Two layers of permission
- MapleMCP account capability: selected when a device is enrolled or later changed in the MapleMCP dashboard.
- Operating-system permission: Windows/Linux user privileges, Android Notification Access, Android Accessibility, and other platform controls.
A feature is available only when both layers allow it. This is why an Android account may include mobile_ui while UI-control tools remain unavailable until Advanced Control is actually enabled on the phone.
Privacy
If you ask MapleMCP to read notifications, inspect visible UI, or capture a screenshot, that requested content may transit MapleMCP infrastructure and the AI service being used to complete the request. See the Privacy Policy for how this information is handled.
MapleMCP is an early-beta remote-control product. Platform behaviour can vary by operating-system version, manufacturer, application, and lock state.
