Which clients are supported?
Any client that implements the Model Context Protocol over Streamable HTTP or SSE. Claude Desktop and Claude Code, ChatGPT connectors and the OpenAI Agents SDK, Grok bots, Meta Muse, Hermes Agent, OpenClaw, Cursor, Windsurf, and MCP Inspector all qualify. The in-product Spark agents use the same brain natively.
Does a Grok bot or Meta Muse get more access than the user who configured it?
No. The client sends a Core Hub token, and every call runs with that token's role and Query Studio data-access rules. A bot configured by a viewer sees what a viewer sees.
Can an external client change my pipelines or data?
Only through tools its token is allowed to use, and only after a signed-in approval for writes proposed by a published agent. Read-only deployments can hide every write tool with a single setting.
What does the model provider see?
Only what the agent puts in its prompt: the question, up to eight memory lines, up to eight schema-graph lines, and tool results the caller could read anyway. Provider credentials live in your own vault, and you can route to a local model.