Overview
This article answers common legal, security, privacy, and compliance questions about GeMCP.
For setup instructions, refer to Set up GeMCP. For prompt examples and common recruiting workflows, refer to Use GeMCP. For general support questions, refer to GeMCP FAQs and troubleshooting.
GeMCP authenticates each user individually through their own OAuth grant and follows the permissions already associated with that user's Gem account.
Requirements
- You must have a Gem account.
- You must have access to an MCP-compatible AI assistant or tool.
- You must have permission from your organization to connect that tool to Gem data.
- You must have access in Gem to the records, analytics, dashboards, or objects you want to ask about.
GeMCP is available to all Gem customers.
Can the MCP server access data I cannot see in Gem? Will candidate PII be accessible?
No. The server authenticates as you through your own OAuth grant, so it is bound by whatever permissions your Gem account already has. It does not have access to data that you do not have access to in Gem.
If your Gem account has permission to access candidate information, that information may be accessible through GeMCP. If your Gem account does not have permission to access that information in Gem, GeMCP should not expose it through your AI assistant.
GeMCP follows each user's existing Gem permissions. It does not create a separate permission model for MCP access.
Can other users see my search history?
No. OAuth is established individually for each person who connects, so there is no shared session or pooled activity log. What you ask and what comes back stays contained to your own connection.
When will an official connector for Claude be available?
This is in review. We will update this page once it is approved.
Can I use the MCP server with a client not listed here?
Yes. Any compliant tool can use GeMCP. Use https://mcp.gem.com/mcp.
What should I do if a tool is not working as expected?
Use the submit_mcp_feedback tool to send a report directly to the Gem team. Include as much information as possible:
- What you asked.
- The response you received.
- What you expected instead.
- Screenshots, if available.
Is Gem SOC 2 compliant?
Gem's infrastructure, including AI features, undergoes annual audits. SOC 2 audit reports are available under NDA. Contact your Gem Account Manager for access or check trust.gem.com.
What is your data retention policy?
Data is retained according to Gem's standard data retention policy. Go to trust.gem.com for the latest information.
Additional resources
To learn more about GeMCP, check out the following resources.
Have any issues or questions on this topic? Please feel free to contact your dedicated Gem Customer Success Manager directly or our Support team at support@gem.com.
- Overview
- Requirements
- Can the MCP server access data I cannot see in Gem? Will candidate PII be accessible?
- Can other users see my search history?
- When will an official connector for Claude be available?
- Can I use the MCP server with a client not listed here?
- What should I do if a tool is not working as expected?
- Is Gem SOC 2 compliant?
- What is your data retention policy?
- Additional resources