Review connected access and privacy
Keep track of accounts, external assistants and the information shared with tools.
Review both connection directions
Review the services connected to your project and the external applications authorized to use MaShop. They are different lists: a service supplies tools to MaShop, while an authorized MCP client can use MaShop tools on your behalf.
Check the account, resources and permissions of each connection. Remove access you no longer need. Disconnecting an account does not undo actions already completed in the external service.
Share only the necessary information
- Choose the intended account and project before starting a task.
- Keep passwords, API secrets and payment credentials out of prompts and agent memory.
- Limit sensitive documents and customer records to the tools and task that need them.
- Review approval targets and outgoing data before authorizing an action.
- Use the legal pages available in settings for current terms and privacy information.
Investigate unexpected access
If an unfamiliar application appears, inspect its name and granted permissions, then revoke its MaShop access when appropriate. Review the provider account separately for sessions or permissions outside MaShop.
When reporting a problem, include the connection name and the observed action. Avoid sending full private records to support unless a specific secure request requires them.
