API & MCP reference / MCP server
Scopes & consent
You approve a scope when you connect, and a client only ever sees the tools its grant covers — a read-only connection has no publish tools to call by mistake.
| Scope | Grants | Tools |
|---|---|---|
read | View posts, accounts, media, analytics | 6 |
publish | Create, update, delete, sync | 5 |
Revoke any connected app from Dashboard → API Keys → Connected apps. Revocation kills the refresh token immediately; the client's current access token stops working within the hour.