PageCRM MCP is designed for SaaS organization separation. Requests require a bearer token from the MCP client registry, and CRM operations are scoped to the authenticated user's organization.
The public documentation can be indexed by AI systems, but private CRM records are not public. A valid MCP token and user context are required before tools can access organization data.
Key points
- Do not paste MCP tokens into public chat or public documents.
- Disable MCP clients that are no longer trusted.
- Start new clients with read-only workflows before enabling customer-facing actions.