Governed Model Context Protocol (MCP) endpoint for enterprise AI clients.
Customer Zero connects business data sources, operating context, and access rules to one governed Snowflake Model Context Protocol (MCP) gateway that AI clients query securely with zero data leakage.
Why Model Context Protocol (MCP)
Frontier AI models need live operational context to produce accurate, defensible work. Historically, connecting enterprise systems to LLMs required bespoke API wrappers, brittle prompt-injection pipes, or unmonitored database dumps.
Customer Zero standardises on the open Model Context Protocol (MCP). MCP provides a standardised JSON-RPC interface for models to discover tools, inspect schemas, and query resources dynamically. By placing a governed Snowflake instance behind an MCP gateway, models query structured business data through authenticated, strictly controlled channels rather than uncontrolled direct access.
Governance boundaries & grant model
Instance-scoped grants
Consumer user × Source instance × Client
Queries cannot traverse source boundaries without an explicit, active grant record. A grant names the consumer user, the exact source instance, and the authorised AI client runtime.
Credential isolation
Zero plaintext secrets in MCP context
Source credentials reside in Google Secret Manager as opaque resource pointers. The MCP gateway executes queries against governed Snowflake views; clients never see or receive source tokens.
Immutable audit trail
Append-only AuditEvent spine
Every MCP query, authorization check, grant creation, and revocation emits an immutable audit event. Operators review full authorization history via GET /audit-events.
Supported source catalog & ingestion status
The platform connects seven business systems of record to the governed Snowflake schema:
| Source | Connection model | Snowflake schema representation |
|---|---|---|
| Google Ads | Self-serve OAuth | Campaign, ad group, keyword, search-term, and spend tables |
| Meta Ads | Self-serve OAuth | Ad account, campaign, ad set, and custom audience spend tables |
| Google Analytics 4 | Self-serve OAuth | Traffic acquisition, event counts, page views, and conversion tables |
| Clockify | Self-serve API key | Time entries, project allocations, billable rates, and member activity |
| Google Business Profile | Operator-provisioned | Per-location search impressions, review sentiment, and ratings |
| Quinos POS | Operator-provisioned agent | On-premise point-of-sale line items, transactions, and tender types |
| Xero | Connect-only setup | Accounting setup available; ingestion workflow not currently active |
Supported AI client runtimes
The Customer Zero MCP gateway acts as a single secure gateway for frontier AI assistants. Enterprise operators provision a single MCP URL with token-based access, enabling teams to work with their preferred model runtime:
Anthropic Claude
Claude Desktop & Enterprise
Connect via custom connector configuration in Claude settings. Supports multi-turn tool invocation, schema inspection, and structured data analysis.
OpenAI ChatGPT
ChatGPT Enterprise & Custom GPTs
Connect via standard MCP gateway bridge. Enables GPT-4o models to query live operational tables without direct database exposure.
Google Gemini Enterprise
Gemini Workspace
Governed integration providing operational data context to Gemini models within the customer's sovereign cloud boundary.
Knowledge Harness & operational context
Raw numbers alone lead to misinterpretation. A 20% decline in marketing spend might look like a performance issue unless the model knows a seasonal promotion concluded.
The Customer Zero Knowledge Harness pairs quantitative Snowflake tables with qualitative operational documents (markdown playbooks, brand voice rules, campaign guidelines, and audience definitions). When an AI client queries the MCP endpoint, the Knowledge Harness retrieves the relevant business context alongside the metric rows, ensuring answers align with internal operating truth.
Infrastructure & sovereign Australian governance
Customer Zero is built and operated by IKMJ (Ikigai & Majime Pty Ltd), an active Australian private company
The entire production MCP stack runs on Google Cloud Platform in region (Melbourne, Victoria). Ingestion pipelines, credential vault pointers, and governed Snowflake endpoints operate strictly under Australian jurisdiction with zero cross-region data replication.
Customer Zero does not currently assert formal SOC 2, ISO 27001, or IRAP certification. Technical teams can verify our security invariants and data handling directly on our Security & Trust page or request architecture documentation at sales@customerzero.app.