MapleMCP

Permissions & Control Levels

MapleMCP separates account permissions from operating-system permissions. You choose which capability groups ChatGPT may use for each enrolled device, and the operating system still decides what the installed agent is allowed to do.

Android

Basic

Background connection, device information, apps and links.

MapleMCP can stay connected, report device details, and request that installed apps or supported links open. Without Advanced Control, Android may accept a launch request but refuse to place the destination app in front while MapleMCP is in the background.

Connected

Basic + Notification Access.

When you separately enable Android Notification Access, MapleMCP can read the active notifications exposed by Android and control active media sessions such as play, pause, next, and previous. This does not grant general screen control.

Advanced Control

Connected + the MapleMCP Accessibility Service.

When you explicitly enable Advanced Control in Android Accessibility settings, MapleMCP can inspect the visible accessibility tree, capture a bounded screenshot, tap and scroll visible controls, use Back/Home/Recents, enter text into selected editable fields, perform coordinate tap/swipe gestures, and more reliably foreground apps and links.

Lock-screen security is not bypassed. Advanced Control does not know or defeat your PIN, password, biometric, or Android lock screen. A requested action may be accepted while the phone is locked, but Android can prevent the result from becoming visible until you unlock the device. For example, a browser may be opened in the background and appear immediately after unlock.

You can turn Notification Access or Advanced Control off at any time in Android Settings. MapleMCP dynamically stops advertising tools that require an operating-system permission when that permission is unavailable.

Windows and Linux

Desktop devices use four independently selectable account capability groups:

Files

Read, write, create, move, inspect, and edit files inside MapleMCP's configured allowed directories.

Search

Search allowed directories for files or content without granting terminal access.

Processes / terminal

Start commands, interact with running command sessions, inspect processes, and request process termination. Commands can access networks using the operating-system permissions of the MapleMCP user.

Diagnostics

Read MapleMCP configuration, system information, usage statistics, recent tool-call metadata, and other diagnostic information.

Least privilege by default

Windows runs the AI-facing MapleMCP agent as the enrolled interactive user rather than as a system administrator. Linux runs the service as the selected non-root Linux user. New Windows and Linux enrollments default file access to that user's home directory unless the local policy is deliberately changed.

Important: giving MapleMCP Processes / terminal or Android Advanced Control can enable consequential actions. Only enable capability groups you intend to use, review important AI-requested actions, and keep backups of important data.

Two layers of permission

  1. MapleMCP account capability: selected when a device is enrolled or later changed in the MapleMCP dashboard.
  2. Operating-system permission: Windows/Linux user privileges, Android Notification Access, Android Accessibility, and other platform controls.

A feature is available only when both layers allow it. This is why an Android account may include mobile_ui while UI-control tools remain unavailable until Advanced Control is actually enabled on the phone.

Privacy

If you ask MapleMCP to read notifications, inspect visible UI, or capture a screenshot, that requested content may transit MapleMCP infrastructure and the AI service being used to complete the request. See the Privacy Policy for how this information is handled.

MapleMCP is an early-beta remote-control product. Platform behaviour can vary by operating-system version, manufacturer, application, and lock state.