Intro
This policy explains what data the DataSelf MCP+ for Data Warehousing & Analytics (the “connector”) accesses when used with an MCP-compatible AI assistant — such as Claude, ChatGPT, or another LLM-based tool — how that data is handled, and the controls you have over it.
Effective date: July 16, 2026 · Applies to: the DataSelf MCP+ for Data Warehousing connector · See also the general DataSelf Corporation Privacy Policy.
In short: the connector is a pass-through query tool authenticated via OAuth 2.0 and your Microsoft account. It does not maintain its own copy of your warehouse data, does not sell data, and only returns what your authenticated DataSelf account is already permitted to see — regardless of which AI assistant or client is connected to it.
Scope of This Policy
This Privacy Policy applies specifically to the DataSelf MCP+ for Data Warehousing, a Model Context Protocol (MCP) server that lets an MCP-compatible AI assistant query a customer’s DataSelf Data Warehouse on their behalf. It describes the data the connector processes as part of that integration, independent of which AI assistant or client is used to connect to it.
It does not replace the DataSelf Corporation Privacy Policy, which governs DataSelf’s websites, products, and services more broadly. Where the two overlap, this policy provides the connector-specific detail; the corporate policy governs everything else.
Data the Connector Accesses
|
Category |
What It Includes |
When It's Accessed |
|
Authentication data |
An OAuth 2.0 access token issued by Microsoft's identity platform after you sign in with your Microsoft account, plus your associated DataSelf user/account type, used to establish and scope the session. DataSelf never receives or stores your Microsoft password. |
At connection time (Microsoft sign-in) and whenever whoami is called. |
|
Warehouse metadata |
Entity names and keys, schema and table names, column names and data types. |
When list_entities, list_tables, or describe_table is called. |
|
Warehouse business data |
The rows and columns returned by a read-only SELECT query — for example sales, financial, inventory, or customer records already modeled in your Data Warehouse. |
Only when run_query is explicitly called with a specific SQL statement. |
|
Query text |
The SQL statements generated and submitted by the connected AI assistant, and the natural-language prompts that produced them. |
For every query executed during a session. |
No write access · No data sold to third parties · Scoped to your existing permissions · Read-only by design
The connector never accesses more than what your authenticated DataSelf user is already entitled to see, and it cannot insert, update, delete, or otherwise modify data in your warehouse — every statement is parsed and non-SELECT operations are rejected before execution.
How Data Is Used
-
Fulfilling your request — Data returned by a query is used solely to answer the question you asked your AI assistant in that conversation.
-
Session context — Query results and metadata may be held in the active conversation’s context so the assistant can reason over them and answer follow-up questions.
-
Service reliability and support — Connection metadata (such as authentication status and error logs) may be used by DataSelf to diagnose connectivity issues and provide customer support.
-
Product improvement — DataSelf may review aggregated, de-identified usage patterns (e.g., which tools are called most often) to improve the connector. This does not involve reviewing the content of your business data.
DataSelf does not use data accessed through the connector for advertising, and does not use your warehouse’s business data to train any AI models — its own or any third party's.
Sharing of Data
Query results and metadata pass between the DataSelf Data Warehouse and the connected AI assistant solely to serve your request; they are not shared with, or sold to, any third party for marketing or advertising purposes.
Limited exceptions apply where DataSelf is required to disclose information: to comply with a valid legal process (such as a subpoena or court order); to protect the rights, property, or safety of DataSelf, its customers, or the public; or with the involvement of infrastructure and support vendors who are contractually bound to protect data and use it only to help deliver the service (for example, hosting providers).
Retention & Security
Retention
The connector does not persist a separate copy of your warehouse data outside of your Data Warehouse. Query results exist for the duration of the conversation in which they were requested, subject to the connected AI assistant’s own conversation retention settings. Connection and diagnostic logs are retained only as long as needed for security and support purposes.
Security Safeguards
Access requires signing in with a Microsoft account through the OAuth 2.0 consent flow; DataSelf never receives or stores your Microsoft password. All queries are validated to block write operations, DDL, and multi-statement injection, and results are capped in size and row count to limit the scope of any single request.
No method of transmission or storage is completely secure, and DataSelf cannot guarantee absolute security. We encourage customers to safeguard their Microsoft account credentials and to follow their organization's standard practices for multi-factor authentication and account security.
Your Rights & Choices
-
Access control — Your DataSelf administrator controls which entities, tables, and rows your account can see; the connector inherits those permissions exactly.
-
Disconnect at any time — You can remove the connector from your AI assistant’s connector or integration settings, revoke its access from your Microsoft account's connected-apps/permissions page, or ask DataSelf to remove your account's access grant.
Data subject requests — If you’d like a copy of the metadata associated with your account, or wish to correct or delete it, contact info@dataself.com. Depending on your jurisdiction (including under the EU framework), you may also have rights to confirm processing, object to it, or request portability, as described further in the DataSelf Corporation Privacy Policy.
Children's Privacy
The DataSelf MCP+ for Data Warehousing is intended for business use by authorized enterprise users and is not directed to, or knowingly used by, children. We do not knowingly collect personal information from children through this connector.
Changes to This Policy
We may update this policy from time to time to reflect changes in the connector’s functionality or applicable law. Material changes will be reflected by updating the effective date at the top of this page. We encourage you to review this page periodically.
Contact Us
Email: info@dataself.com
Phone: 888-910-9802
Mail: DataSelf Corporation, PO Box 551, Santa Clara, CA 95052
Corporate Privacy Policy: www.dataself.com/privacy