Assembly AI Privacy & Data Handling Policy

AI Policy

Assembly AI Privacy Policy & Data Handling

Last updated: 07/17/2026

This page explains how Assembly handles workspace data when you use Assembly's AI capabilities. It is a companion to the Assembly Privacy Policy and the Assembly Terms, and it is referenced from Section 18 of the Privacy Policy. Where this page and the Privacy Policy say different things on the same topic, the Privacy Policy controls.

We will update this page as functionality changes. Changes that affect the Privacy Policy will be reflected there (as described in Section 20 of the Privacy Policy).

What this page covers

Assembly currently offers two AI capabilities. They have different data-handling models and are described separately below.

Both capabilities are currently in beta. Functionality, data flows, and configuration may change.

What Assembly does not do — for either capability

For both Assembly's in-product AI features (Assembly Assistant and any additional AI features Assembly launches) and MCP connections, Assembly does not:


Part 1 — Assembly Assistant (Beta)

How it works

When you use Assembly Assistant, Assembly sends the prompt and the workspace data needed to answer it (for example, the message thread you asked to summarize) to OpenAI. OpenAI generates the response and returns it to Assembly, which surfaces it back to you in the Assistant.

OpenAI as Service Provider

OpenAI processes data for Assembly Assistant as Assembly's Service Provider, under Assembly's contract and data-processing agreement with OpenAI. That contract commits both Assembly and OpenAI not to use Assembly Assistant inputs or outputs to train AI models.

What Assembly does with this data

Retention

Permissions

A User invoking Assembly Assistant inherits their existing in-product permissions. Assembly Assistant cannot read or modify data that the User could not access directly through Assembly.

Controls

Where Assembly Assistant includes user-level or workspace-level toggles, those are described in the in-product settings. Customers who do not wish to use Assembly Assistant can decline to enable it.


Part 2 — Third-Party AI Assistant Connections via MCP (Beta)

What the MCP is

Assembly's MCP server is an authenticated gateway. It lets a third-party AI assistant — such as ChatGPT or Claude — act on a connected Assembly workspace on behalf of the workspace User who connected it. The MCP server exposes a curated set of tools that map one-to-one to functionality already available through Assembly's existing Platform API.

MCP does not introduce new categories of data. It provides a different way to reach data that is already in the workspace, subject to the connecting User's existing in-product permissions.

Who can connect

Only internal administrator users of a workspace can establish an MCP connection. Client-portal end-users and internal Staff role users cannot connect AI assistants.

How a connection is authenticated

The three parties involved

Three separate parties are involved in any MCP request:

The third-party AI provider is an independent third party that the customer has chosen. It is not Assembly's Service Provider or sub-processor. Assembly does not select the AI assistant on the customer's behalf and does not have a contractual relationship with the AI provider on the customer's behalf.

What Assembly does with MCP traffic

Assembly:

What Assembly does not return through MCP

The MCP server does not return Assembly's internal credentials, infrastructure metadata, audit internals, or service logs. Errors are surfaced as the Platform API's standard JSON envelope (status code and human-readable message) — never as stack traces, debug payloads, or raw logs.

Resource IDs returned through MCP are the public Platform API IDs documented at docs.assembly.com/reference — the same IDs a third-party API integration would receive.

Permissions and scope

A connected AI assistant inherits the connecting User's existing in-product permissions — no more, no less. If the connecting User cannot see a record in the dashboard, the AI assistant cannot see it through MCP either.

The MCP server is module-gated: tool families only appear if the workspace has enabled the corresponding module (such as Payments, Contracts, Files, Forms, Messages, or Tasks). Disabled modules' data is not exposed.

Tool-level scopes (roadmap)

Today, the MCP server does not expose tool-level scopes. A connected AI assistant has the same breadth of access as the connecting User. Tool-level scoping may be added in a future release. In the meantime, customers who want narrower access should restrict who may connect AI assistants, or connect using a service account whose in-product permissions are deliberately limited.

Audit log (coming soon)

MCP tool calls will be surfaced to workspace administrators in Assembly's upcoming in-product audit log, alongside other Platform API activity. The audit log will show, at minimum, which User initiated the connection, which tools were called, and when. Administrators can use the audit log to monitor AI assistant activity within the workspace.

Categories of data accessible via MCP

Subject to the connecting User's permissions and the customer's enabled modules, an AI assistant connected via MCP may access the following categories of workspace data, each of which can contain Personal Data:

Retention

In addition to the general retention principles described in Section 6 of the Privacy Policy, the following retention periods apply to MCP:

Customer responsibilities

By enabling an MCP connection, the customer directs Assembly to share workspace data with the third-party AI assistant in response to its tool calls. The customer is responsible for:

Disconnecting

A connecting User can manage active MCP connections at any time:

Revocation does not retroactively delete or recall any data the AI provider has already received during the life of the connection. That data is held by the AI provider under its own retention rules. To request deletion of data already held by the AI provider, the customer must contact that provider directly.

International data transfers

Assembly is hosted on AWS infrastructure in the United States. Where personal data is transferred internationally to or by Assembly, Assembly relies on the transfer mechanisms described in Section 7 of the Privacy Policy.

Transfers from Assembly to a third-party AI provider as a result of an MCP tool call are made on the customer's instruction. The customer is responsible for the lawful basis and transfer mechanism applicable to its disclosure to the AI provider.

Distribution status

The MCP server is currently available in developer-mode beta inside ChatGPT, Claude, and Cursor (custom connector flows). Beta status will be removed from this page when the capability moves to general availability.


Service Providers used to operate Assembly Assistant and MCP

In addition to the Service Providers described in Section 12 of the Privacy Policy and our Subprocessors listed in our Trust Center, the following Service Providers support Assembly's AI capabilities. Their use is governed by Assembly's agreements with them and by their own privacy practices:

Data subject requests

Requests to access, correct, or delete personal data that Assembly holds about you continue to be handled as described in Section 10 (GDPR rights) and Section 11 (CCPA rights) of the Privacy Policy.

For requests relating to data already held by a connected third-party AI provider, please contact that provider directly using the contact details in its privacy policy. Assembly cannot recall or delete data from another company's systems.

Questions

If you have questions about this page or about Assembly's handling of AI and MCP data, please contact us at support@assembly.com.