The AI connector

Masterdesk can answer questions from an AI assistant about the documents you already have. The assistant searches, reads and files — it never sees a realm you have not opened to it.

What it is

Masterdesk runs a Model Context Protocol server: a standard way for an assistant to call a handful of named, narrow operations instead of being handed your archive. Every call arrives as a specific request for a specific thing, is checked against your own permissions, and is written to the access log. Ten operations exist, and that is the whole of what any assistant can do.

Reading

  • search_documents — finds documents by free text, across titles and recognised text, optionally within one tag.
  • get_document — returns one document's title, date, tags, parties and business identifiers.
  • get_document_text — returns the recognised text of a document, page by page.
  • get_page_image — returns one page as an image, for a signature, a stamp or handwriting.
  • list_tags — lists your own category tree.
  • list_realms — lists the realms you belong to and where the connector is switched on.

Filing

  • set_document_title — renames a document.
  • set_document_date — sets or clears the date printed on a document.
  • add_document_tag — files a document under one of your existing tags.
  • remove_document_tag — takes one tag off a document.

There is no operation that uploads, deletes or shares a document, and none that creates a tag. Every change is recorded in the document's own history, under your name, exactly as if you had made it in Masterdesk yourself.

Switching it on

The connector is off until somebody deliberately turns it on, and it takes two decisions rather than one: an administrator enables it for the realm, and then grants it to individual people within that realm. Until both are done, the assistant is told plainly that access is not enabled — it is never left guessing, and neither are you.

Connecting an assistant

Add Masterdesk as a custom connector in ChatGPT or Claude, using this address:

https://www.masterdesk.ch/mcp

  1. Your assistant sends you to Masterdesk to sign in, with your password and your second factor as usual.
  2. Masterdesk asks whether you want to grant this assistant access, and to read only or to read and file.
  3. The assistant may then call the operations above, as you, for as long as the grant stands.

What leaves Masterdesk

Only what an operation was asked for. When the assistant reads a document, that document's text — or the page image — is sent to the assistant's operator and becomes part of your conversation there, and their terms then govern it. Nothing is sent in advance, nothing is synchronised, and no copy of your archive is held anywhere else.

Masterdesk records which documents were disclosed and when, in the same access log that records what you open in the browser. Turning the connector on does not turn that visibility off.

Switching it off

Remove the connector in your assistant, or ask an administrator to withdraw your grant or to switch the connector off for the whole realm. Any of the three takes effect at once, and the access log of what was seen while it stood remains.

Support

Questions about the connector: info@juno.ch.