← Back to glossary
Glossary

MCP Roots

Reviewed 9 April 2026 Canonical definition

MCP roots are a security mechanism by which an MCP client declares the filesystem paths or resource namespaces that it consents to share with a connected MCP server. Roots implement a form of capability-based access control — limiting what resources a server can request or read, even if the client has broader system access.