App Permission Review

App Permission Review MCP Connector for Claude

A+

Audit application permissions against official requirements to identify security risks.

4 tools Official Updated Oct 1, 2026 Official Vinkius Partner

This MCP server provides a specialized auditing suite to compare user-supplied application permissions against a strict registry of approved permission sets. It helps identify privacy risks and compliance gaps by categorizing permissions into keep, review, or revoke statuses. Use analyze_app_permissions to perform a full audit, get_app_requirements to see the official permission list for an app, list_all_apps to see available applications, or search_permission_by_name to verify permission validity.

auditpermissionssecuritycomplianceprivacy

4 tools expose this connector's capabilities to your AI agent.

list_all_apps

Provides a directory of all applications currently managed within the permission registry

get_app_requirements

Retrieves the official list of approved permissions for a specific application

search_permission_by_name

Checks if a specific permission string exists within the global domain context

analyze_app_permissions

Performs the core audit of a specific application's permission profile

See how to talk to your AI agent using App Permission Review.

Audit the permissions for 'PhotoEditorApp' with permissions: ['camera', 'location', 'contacts'].

The audit for PhotoEditorApp is complete. Keep: ['camera']. Review: ['location', 'contacts']. The app is marked as unapproved due to the extra permissions requested.

What are the required permissions for 'WeatherService'?

The required permissions for WeatherService are: ['location', 'network'].

Is 'biometric_auth' a valid permission?

Yes, 'biometric_auth' is a recognized permission under the 'Security' category.

You can use the `analyze_app_permissions` tool by providing the application name and the list of permissions you want to check.

Related Connectors