AI in Your Firm

What the heck is an MCP?

An MCP is a standard way to let an AI assistant safely use your tools, and here is the part that surprises people: it runs on the same kind of API your developers already…
Marc Pitre·June 24, 2025·7 min read

An MCP is a standard way to let an AI assistant safely use your tools, and here is the part that surprises people: it runs on the same kind of API your developers already talk about. If an API is the wiring that lets two systems exchange data, an MCP is a universal wall socket built on that wiring, the one an AI assistant can plug into to actually do things in your software instead of just talking about them. You have heard ‘API’ for years. MCP is the word that finally makes an API useful to your assistant, not just your developer.

Start with the plumbing you already know

Most owners know the word API without wanting the technical lecture. An API is a defined way for one piece of software to request information or an action from another. Your invoicing tool might use an API to receive customer details from another system. A reporting service might use an API to collect approved data. The API specifies what can be requested, what must be supplied, and what comes back.

Think of it as plumbing behind the walls. A developer still has to connect the pipes, handle credentials, translate formats, and build the experience a person will use. Without a common approach, each new assistant connection can become its own construction project.

MCP is a common socket for assistants

MCP stands for Model Context Protocol. Anthropic introduced it in late 2024 as an open standard for connecting AI assistants with data and tools. By mid-2025, it is spreading across the AI industry, which matters because a protocol becomes useful when more than one company agrees to speak it.

The wall-socket analogy is helpful. The electricity in a building still depends on wiring, breakers, and a power source. The socket does not replace those things. It gives compatible devices a predictable place to connect.

An MCP server plays a similar role. It can present an assistant with approved resources, such as documents or records, and approved tools, such as searching, creating, or updating something. The assistant can discover what is available through a standard pattern rather than requiring a completely custom integration for every combination.

The underlying software may still use APIs. MCP provides a consistent layer describing what tools exist, their required inputs, and their results.

Why this matters to an owner

Until now, most people experienced an assistant as a clever box beside the work. You copied information into it, asked for help, then copied the answer back into the software where the work lived. The assistant could advise, but it could not reliably reach the source or complete the next step.

A standard connection changes that relationship. With permission, an assistant could search the right folder for a current brief, retrieve the approved version, summarize it, and prepare a next action using a tool the system exposes. It could answer from current business information rather than whatever someone remembered to paste into the chat.

The phrase “with permission” carries most of the importance. A connection should expose only the sources and actions required for the job. Reading a public knowledge base is different from accessing client contracts. Drafting a task is different from deleting records.

For an owner, the promise is less integration reinvention. If the standard continues to spread, software companies can build one well-described MCP connection instead of a unique bridge for every assistant. Assistants can become more useful across the tools a firm already uses.

What the assistant can actually do

An MCP connection can expose three broad kinds of capability.

First, it can provide resources the assistant may read, such as selected files, documentation, or records.

Second, it can provide actions with defined inputs, such as searching projects, creating a draft, or retrieving a record.

Third, it can provide reusable starting points for common work.

The exact capabilities depend on the server and the permissions behind it. MCP is not magic access to every feature. It is a standard way to present the access someone deliberately built and allowed.

A universal socket does not remove security

A socket is useful because many things can plug into it. That is also why you care what gets plugged in.

Before connecting an assistant, ask which account authorizes it, what it can read and do, and whether actions require confirmation. Ask how credentials are stored and revoked, whether activity is logged, and how client or workspace boundaries are preserved.

Use the smallest permission that makes the job useful. A research assistant may need read access but no write access. A drafting assistant may be allowed to prepare a proposed action while a person approves the final step. Sensitive or destructive actions deserve stronger controls than routine retrieval.

Good connections preserve identifiers, workspace boundaries, and the user’s actual role. A standard can make these controls easier to express, but it cannot replace thoughtful design.

Do you still need a developer?

Sometimes. Using an existing MCP connection may be as simple as authorizing it. Building one still requires technical work to connect the system, define resources and tools, handle authentication, test results, and maintain it.

The standard reduces repeated effort. A familiar socket does not wire the building, but it makes the finished connection predictable.

For a small firm, the near-term question is not whether to build an MCP server tomorrow. It is whether vendors you depend on are beginning to offer trustworthy connections, and whether the assistant use case is valuable enough to justify access.

Why the pattern is likely to matter

Assistants are more useful when they can work with current information and take controlled action. Software companies and users do not want a pile of fragile, one-off connections.

An open protocol offers a common meeting point. If adoption continues, owners may choose software partly by how safely and clearly it can work with the assistant they prefer. The assistant may become less of a destination and more of a doorway into approved business tools.

Keep the idea simple. APIs are the wiring. MCP is the common socket designed for AI assistants. Permissions determine what receives power.

FAQ

Is an MCP the same as an API?

No. An API is the underlying way software systems exchange data or actions. MCP is a standard designed to present resources and tools to AI assistants in a consistent form, often using APIs underneath. It does not replace every API. It gives assistants a common way to discover and use the capabilities a provider intentionally exposes.

Do I need a developer to use one?

Not always. If a trusted vendor offers a ready-made MCP connection, setup may mostly involve installation and authorization. Building a new server or connecting custom software still requires technical skill. Even with a ready-made option, someone should review permissions, test the exact behavior, and understand how to disable the connection if needed.

Is it safe to connect an AI to my business tools?

It can be safe enough for an approved use when access is limited, identities and workspaces are kept separate, sensitive actions require confirmation, and activity can be reviewed. Safety depends on the specific assistant, server, tool, and permissions. Start read-only when possible, avoid unnecessary data access, and never treat the word “standard” as a security guarantee.

See your work before it drifts.

Net Net keeps plan and effort side by side, so you catch the slip while there is still time to act.

Start your free trial