Give teams real AI access without giving up control.
People keep Claude, ChatGPT, Cursor, Codex, VS Code, and terminal agents, while IT gets one place to manage which MCPs each person reaches and how access is revoked.
Managed catalog rollout, team access, identity lifecycle, and activity streaming. Annual invoicing is available.
Discuss your rolloutGive people a paved road, not another ticket queue.
Start open for approved MCPs, require review, or route access through rules that match your organization.
Choose how the catalog rolls out
Let people connect supported MCPs themselves, require admin review, or apply rules by MCP, category, publisher, and team.
Match access to the job
Set full, read-only, or no access by workspace, team, and person, then narrow individual governed tools when needed.
Connect identity to offboarding
Use OIDC SSO and SCIM provisioning and group mapping. Deprovisioning cuts Passport sessions, clients, and account grants.
Give auditors the access records they ask for
Review member activity and privileged admin changes, export CSV or JSONL, or stream governed activity to SIEM / OTLP.
Keep the clients. Centralize the hard parts.
Passport sits between the AI experience and the work app, so adoption does not depend on standardizing everyone on one AI vendor.
Most teams cannot see what their AI already touches.
Recent research on AI adoption and oversight.
Give reviewers evidence they can inspect.
Security posture, Trust summary, DPA and SCCs, subprocessors, privacy terms, and live service status are public. Current assurance gaps stay explicit.
Use hosted Passport or keep it in your VPC.
The hosted service runs in the United States. Self-hosting uses one application container plus your Postgres and encryption keys, with the same gateway, catalog, and controls.
Passport does not yet publish a SOC 2 report, independent third-party penetration-test report, independent uptime history, or contractual SLA/RTO/RPO. Review the Trust summary before procurement.
Plan a rollout your developers will actually use.
Tell us which clients, identity provider, controls, and deployment model your team needs.