Security & Data

How sign-in works for ZoomInfo MCP, what ZoomInfo and your AI provider can see, and how admins control access.

·Rowan BaileyRowan BaileySenior Director, Product

ZoomInfo MCP gives your AI client the same data your ZoomInfo login already has, and nothing more. This page covers how sign-in works, what ZoomInfo sees, what your AI provider keeps, and how admins control access.

Authentication

Every request goes through ZoomInfo's MCP Gateway, which checks who you are and what your package allows before it routes the call. You sign in with your own ZoomInfo login. It's the same one you use in the web app.

Each tool call runs as the signed-in user, so results use your accounts, CRM relationships, and conversation history. The server keeps no chat history between calls; your AI provider holds the conversation.

Data Entitlements

MCP doesn't grant access to any data beyond what your ZoomInfo package already includes. The data and fields your AI tool can reach are the same ones you can reach in the ZoomInfo web app.

  • Different packages return different fields.
  • Some tools depend on specific entitlements. For example, intent data is only available to organizations that have Intent Topics configured.
  • Every tool call respects your organization's package entitlements.

What ZoomInfo Processes

ZoomInfo's MCP server processes the tool calls you make: the parameters you send and the results it returns. ZoomInfo can't see the rest of your AI conversation or the context your AI tool keeps between messages.

Some MCP tools write data to ZoomInfo. Update GTM Context creates or changes your organization's GTM context and requires ZoomInfo admin access. Upsert Audience and Manage Audience Rows create and change audiences.

AI Provider Data Retention

ZoomInfo data passes through your AI provider's infrastructure, and your agreement with that provider governs how it's retained and used.

Review your AI provider's retention settings and turn off training on your data where you can, especially for enterprise deployments that handle sensitive account or contact data.

Who Can Use MCP

Can use MCP:

  • Free ZoomInfo accounts created at gtm.ai.
  • Users on any ZoomInfo package, including Sales, Copilot, Studio, and ZI Lite, with data credits available. See Which credits MCP uses.

Can't use MCP:

  • Admin-only seats, which have no data access by design.
  • Users whose subscription only carries recurring monthly credits.

Managing Access

Admins turn MCP on or off for each user under Admin Portal > Users > User Management, with the API Access setting.

There's no organization-wide switch to turn MCP off for everyone at once; access is managed per user. Admins can also cap each user's credits; see Admin Controls.

What's Next