Hinoki Concierge MCP is intentionally thin. It forwards approved tool calls to Hinoki backend over HTTPS, where tenant entitlement, credential status, partner allowlist, Desk handoff, readiness, and audit attribution are enforced.
Tokens are issued by the workspace owner and shown only once.
Use a separate token for each client and revoke tokens that move machines.
Voice and realtime media remain outside the MCP surface in the first release.
FAQ
Common MCP install questions
Is Hinoki Concierge MCP a hosted remote MCP server?
No. The first release is a local stdio MCP package installed on the machine that runs Codex, Claude, or OpenClaw.
Can anyone install the package and access a workspace?
No. The package also needs an active paid workspace and an owner-issued tenant-scoped MCP credential.
Does MCP bypass the Hinoki backend?
No. The local MCP server is a thin adapter over Hinoki backend APIs. Authorization, audit logs, readiness, Desk, and Ledger behavior remain in the backend.
MCP
Hinoki Concierge MCP
Issue tenant-scoped MCP credentials for approved agent clients, then hand the operator the exact install and launch steps for Hinoki Concierge MCP.