Permissions
LMCP uses the permission controls built into macOS and Windows. Each feature asks only for the access it needs, and you can revoke that access at any time.
Windows permissions
On Windows, LMCP uses the access already granted to your signed-in desktop apps and user account. File Explorer, Office, Outlook, Teams, Slack, OneDrive and Google Drive tools only see the local data available to that Windows user. Windows may ask for confirmation when a feature needs app control or access to a protected location.
To review access, open Settings → Privacy & security. You can also use each app’s own account and privacy settings to limit what remains available locally.
macOS permission map
| macOS permission | What it enables in LMCP |
|---|---|
| Calendars | Read & create events, check availability |
| Contacts | Search people, look up emails & phone numbers |
| Reminders | Read, create and complete reminders / To Do tasks |
| Full Disk Access | Mail bodies & attachments, iMessage history, Teams/Slack/WhatsApp/Signal local caches, file search |
| Automation (Apple Events) | Acting in apps: send email via Mail, create Notes, drive Safari, OmniFocus, Messages |
| Accessibility | GUI automation — click, type, menus, windows in any app |
| Screen Recording | Screenshots & screen recordings (capture tools) |
Automation for Mail is the only permission LMCP asks for during setup. Everything else is requested the first time a feature needs it — if you never use a feature, its permission is never asked for. Grants persist across updates (the app is signed with a stable Developer ID).
Granting a permission
Calendars, Contacts, Reminders and Automation use macOS’s standard prompt (“LMCP would like to access…”) the first time your AI uses the feature: click Allow. To grant Automation for an app before you need it, use Ask now in the LMCP menu bar.
Full Disk Access, Screen Recording and Accessibility are granted in System Settings → Privacy & Security: LMCP opens the right pane, with its window placed next to it, and you drag Local MCP into the list.
Revoking a permission
System Settings → Privacy & Security → pick the category (Calendars, Full Disk Access, Automation…) → toggle Local MCP off. The relevant tools stop working immediately and tell the AI why. Uninstalling LMCP also removes its entries from System Settings.
Is LMCP safe? What this means for privacy
- You don’t need an LMCP account.
- Every permission can be seen and revoked in your system settings, and every service can be turned off (see Troubleshooting).
- Local tools execute on your Mac or Windows PC; cloud AI providers can receive requested content.
- Preview and confirmation behavior depends on the tool, platform and AI client. Check the tool contract before authorizing a change.
- The optional Cloud Relay is off by default. When enabled, it forwards requested results to the AI provider; review the applicable data policies.
See the full privacy policy and GDPR guide.