AI Permissions
AI Permissions lets account admins choose, per role, what AI can do in an Optimove tenant. The same settings apply to every request made through the Optimove MCP (from clients such as Claude, ChatGPT, Cursor, and VS Code) and through OptiGenie.
Admins manage the settings in the Optimove UI at Settings › Optimove AI › AI Permissions. For step-by-step admin instructions, see AI Permissions in the Optimove Academy.
How Access is Evaluated
Every MCP tool call and OptiGenie request is checked on the server before it runs. A call is allowed only when both of these allow it:
- The user's Optimove role. The MCP authenticates as the signed-in user, so the user's role, permissions and PII masking apply exactly as they do in the Optimove UI.
- The AI Permissions setting for that role. The admin-defined setting for the user's role (Admin, Manager, Marketer or Analyst).
AI Permissions can only narrow what AI does. It never grants AI more access than the user's own role.
Settings changes apply from the next call. MCP clients don't need to reconnect or reauthorize.
Permissions
| Permission | Allows AI to | Default |
|---|---|---|
| Create draft | Create campaigns as drafts, and create building blocks (Target Groups, templates, triggers, attributes). New building blocks aren't attached to any campaign. | On for all roles |
| Edit | Edit campaign drafts, and building blocks that no live campaign uses. | On for all roles |
| Edit in use ⚠ | Edit live campaigns and the building blocks they use. Turning this on also turns on Edit. | Off for all roles |
The defaults match how the Optimove MCP and OptiGenie behaved before AI Permissions was introduced. Additional permissions will appear as they become available.
A building block is in use when a live campaign uses it. The check is the same one the Optimove UI uses.
Blocked Calls
When a call isn't allowed, nothing in the tenant changes and the tool returns this message:
Your account doesn't allow AI to [action] for your role. You can still do this in the Optimove UI.
If you build prompts or agents on top of the Optimove MCP, treat this message as a permission outcome, not an error to retry. Retrying won't succeed until an admin changes the setting or the user's role.
Edit in Use Behavior
With Edit in use on, AI can do exactly what the Optimove UI and API allow for each object, with the same validations. Nothing more.
| Object | Behavior |
|---|---|
| Scheduled campaigns | Editable until the campaign reaches Processing. Once running, changes apply to future occurrences only. |
| Triggered campaigns | Editable. |
| Target Groups | Editable when used by live campaigns. |
| Templates | Editable when used by live campaigns. |
| Triggers | Editable when used by live campaigns. A change affects every campaign that uses the trigger, so AI warns the user before applying it. |
| Calculated attributes | Published calculated attributes are editable. |
| Marketing actions | Editable when used by live campaigns. |
| Promotions | Must be deactivated before editing. All fields except the promo code can be changed. |
Updated about 1 hour ago
