Skip to main content

MCP server usage in your company

You can manage MCP server usage to provide your developers with valuable tools while maintaining security and compliance.

Neste artigo

O MCP (Protocolo de Contexto de Modelo) é um padrão aberto que define como os aplicativos compartilham contexto com os LLMs (modelos de linguagem grande). O MCP fornece um modo padronizado de conectar modelos de IA a diferentes fontes de dados e ferramentas, permitindo que eles trabalhem juntos com mais eficiência.

You can manage MCP server usage in your organization or enterprise by configuring MCP policies on GitHub.

The MCP servers in Copilot policy defines whether MCP servers can run at all across Copilot clients. We recommend keeping this policy enabled and, if necessary, restricting the MCP servers that users can run to an approved list.

MCP allowlists

The recommended method for creating an allowlist is to use your enterprise's managed-settings.json file. This allows you to apply settings across clients that users cannot override.

Alternatively, you can host your own MCP registry and restrict access to servers in the registry. However, this method has weaker enforcement than managed-settings.json.

MethodManaged settings fileCustom registry
Release phaseGenerally availableVersão preliminar pública, not prioritized for development
Ease of setupYou can host a configuration file on GitHub that applies automatically to clients.You must host your own registry that matches the MCP specification and serves HTTPS requests.
Enforcement levelEnterprise-wide settings, overridable for enterprise teamsEnterprise-wide or for individual organizations
Supported clientsClients supported by the managed-settings.json file, see Getting started with enterprise-managed settings. Planned to expand in the near future.See Imposição de registro privado do MCP.
Server matching methodSecure matching based on name, URL, or stdio commandsLess secure matching, based on name or ID only. Users can bypass the restriction by editing configuration files.

Next steps

To configure an allowlist on GitHub, see Configurando uma lista de permissões do servidor MCP para sua empresa.

Further reading