4Degrees AI Connector

Privacy Policy

4Degrees is the relationship intelligence and deal flow platform used by private-markets teams to source, drive, and close more deals. This page covers what happens to your data when your firm connects 4Degrees to an external AI client.

Effective April 27, 2026

Scope #

This policy specifically covers the 4Degrees AI Connector — the Model Context Protocol (MCP) server hosted at https://mcp.4degrees.ai/mcp that lets AI assistants such as Anthropic’s Claude (claude.ai, Claude Desktop, Claude Code) and OpenAI’s ChatGPT (chatgpt.com) query your 4Degrees data on your behalf.

It supplements, but does not replace, our master 4Degrees Privacy Policy, which governs your firm’s overall use of the 4Degrees platform.

What the connector exposes #

Read-only access to data your seat in 4Degrees already has permission to view, scoped to your user account and your firm’s organization. Specifically:

What is never exposed #

How data flows #

  1. You ask your AI assistant a question — for example, “Who’s my warmest path to the new CTO at Stripe?”
  2. The assistant calls one of the connector’s MCP tools (discover, query, or compare) using your authenticated bearer token.
  3. The connector verifies the token, queries your 4Degrees data, and returns the result to the assistant.
  4. The assistant renders the result back to you in the conversation.

Per their respective connector terms, neither Anthropic (per Anthropic’s Connector Terms) nor OpenAI (per the OpenAI Apps SDK terms) trains its models on data returned by third-party connectors. 4Degrees does not share connector data with any other third party.

What 4Degrees stores #

For the connector specifically, we log the following per request for audit, rate-limiting, and debugging purposes:

We do not store:

Tokens are stored as SHA-256 hashes; the original token value is never persisted server-side. All traffic between AI assistants and the connector is encrypted in transit using TLS. Standard 4Degrees database backup, retention, and deletion policies (see our master Privacy Policy) apply to the audit log.

Authorization & revocation #

The connector uses OAuth 2.1 with Dynamic Client Registration (RFC 7591) and PKCE (S256). Each member of your team explicitly authorizes their AI assistant during setup, and that authorization can be revoked at any time:

Revocation is effective immediately on the next request.

Children #

The 4Degrees platform is not intended for use by anyone under the age of 18.

Changes to this policy #

We may update this connector-specific policy from time to time. The “Effective” date at the top of this page reflects the most recent change. Material changes will also be reflected in our master Privacy Policy.

Contact #

Questions about how the connector handles your firm’s data: privacy@4degrees.ai.
Security disclosures: security@4degrees.ai.
General support: support@4degrees.ai.