MCP fields
Record the documented MCP method and tool fields.
Audit agent actions
Enable MCP-specific authorization fields to record the caller, method, tool, parameters, request ID, and policy result for requests that pass through Pomerium.
Record the documented MCP method and tool fields.
Record allow, deny, and policy reason fields.
Protect parameters and other sensitive log data.
Authorization record
Authorization logs describe the policy check. Configure only the fields that the organization needs and can protect.
Logging boundary
Keep authorization and proxy access logs separate. Pomerium records requests that pass through Pomerium.
MCP observability fields and behavior.
Authorization decision logs.
HTTP request and response log fields.