Skip to documentation
PipeLedger AI

MCP documentation

Governed finance data for compatible AI hosts

PipeLedger exposes certified finance data through a credential-scoped MCP server. Tool discovery and every subsequent request apply the organization policy attached to that connection.

Connection details

Add the remote MCP endpoint to ChatGPT or another compatible host. OAuth is the preferred connection path, so a PipeLedger bearer does not need to be copied into the host or placed in chat.

Endpoint
https://mcp.pipeledger.ai/mcp
Transport
Streamable HTTP
Authentication
OAuth 2.1 authorization code with PKCE

Follow the public OAuth connection guide for the authorization flow and troubleshooting steps.

Permission boundary

The host sees only tools permitted by the connection's active policy. PipeLedger checks that policy again when each tool runs; tool discovery alone never grants access.

  • Financial results come only from approved, published delivery surfaces. Raw, staging, intermediate, and unpublished data are not available through MCP.
  • Mart access, dimension scope, row filters, GL account confidentiality, identity privacy, limits, and clearance are enforced before results leave PipeLedger.
  • Masked labels, stable privacy tokens, aggregation, or omitted transaction detail are expected outcomes when the connection has restricted access.
  • Deterministic finance logic produces the authoritative values. An AI host can interpret those values but cannot change them.

Tool behavior

Viewer connections can resolve governed business objects, inspect schemas, query permitted marts, produce financial statements and Metrics Reports, drill into signed report evidence, review data quality and audit evidence, reconcile usage, and inspect the Finance Catalog.

The Report Library is a bounded personal-workspace capability. It can save, revise, or archive an owner-scoped Metrics Report and can propose or withdraw an internal sharing request. A proposal does not publish into the organization library. Operator tools are not part of the standard viewer connection.

Responses include structured content plus an equivalent text form for host compatibility. Errors are sanitized and do not expose database details, credentials, or financial records outside the authorized result.

Connection support

For pre-subscription questions or sign-in trouble, email support@pipeledger.ai. PipeLedger targets an initial response within one business day.

Subscribers can use the secure in-app Communication Hub for live support when available or tracked tickets at any time. Do not send passwords, access tokens, authenticator or recovery codes, or financial records by email. See the public support page for both contact paths.