Borneo for AI agents
Borneo is a data privacy platform that security teams use to scan cloud resources for sensitive data and manage the processing activities and DPIAs tied to it. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Borneo.
Scan a cloud resource
Schedule a cloud resource scan to discover sensitive data before deciding on any remediation steps.
Review a processing activity
Look up a processing activity or its risk threshold before creating a new DPIA for it.
Require approval before deleting an asset
Treat deleting an asset, domain, or recipient record as destructive since it removes tracked privacy data.
153 Borneo actions, graded by risk.
Every Borneo action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
72Look things up. Allowed by default.
- borneo.get_domain_by_idGet domain by id
- borneo.get_scan_by_scan_idGet scan by scanid
- borneo.get_threshold_by_idGet threshold by id
- borneo.list_insight_filtersList insight filters
- borneo.get_category_by_labelGet category by label
- borneo.get_headquarters_by_idGet headquarters by id
- borneo.get_user_profile_by_idGet user profile by id
- borneo.get_cloud_account_by_idGet cloud account by id
- borneo.list_scans_with_filtersList scans with filters
- borneo.list_data_breach_filtersList data breach filters
- borneo.list_discovered_documentList discovered document
- borneo.list_events_with_filtersList events with filters
- borneo.list_issues_with_filtersList issues with filters
- borneo.list_discovered_infotypesList discovered infotypes
- borneo.list_or_filter_recipientsList or filter recipients
- borneo.get_department_filter_listGet department filter list
write
62Create and change things. Allow, or ask the user first.
- borneo.create_new_assetCreate new asset
- borneo.update_dpia_by_idUpdate dpia by id
- borneo.create_dashboard_userCreate dashboard user
- borneo.post_dashboard_reportPost dashboard report
- borneo.update_domain_detailsUpdate domain details
- borneo.update_employee_by_idUpdate employee by id
- borneo.update_department_nameUpdate department name
- borneo.update_threshold_by_idUpdate threshold by id
- borneo.post_support_chat_queryPost support chat query
- borneo.create_headquarter_entryCreate headquarter entry
- borneo.update_data_breach_entryUpdate data breach entry
- borneo.add_discovered_recipientsAdd discovered recipients
- borneo.post_classification_statsPost classification stats
- borneo.post_filtered_access_logsPost filtered access logs
- borneo.post_scan_resource_statusPost scan resource status
- borneo.update_category_infotypesUpdate category infotypes
destructive
19Delete, cancel or archive. Ask first, or deny outright.
- borneo.delete_dpia_by_idDelete dpia by id
- borneo.delete_asset_by_idDelete asset by id
- borneo.delete_domain_by_idDelete domain by id
- borneo.delete_employee_by_idDelete employee by id
- borneo.delete_recipient_by_idDelete recipient by id
- borneo.delete_threshold_by_idDelete threshold by id
- borneo.delete_department_by_idDelete department by id
- borneo.delete_category_by_labelDelete category by label
- borneo.delete_data_breach_by_idDelete data breach by id
- borneo.delete_tag_from_resourceDelete tag from resource
- borneo.delete_headquarters_by_idDelete headquarters by id
- borneo.delete_legal_document_by_idDelete legal document by id
- borneo.archive_discovered_recipientArchive discovered recipient
- borneo.delete_lopdp_threshold_by_idDelete lopdp threshold by id
- borneo.delete_dashboard_report_by_idDelete dashboard report by id
- borneo.delete_processing_activity_by_idDelete processing activity by id
Borneo in three steps.
- 01Your users connect BorneoThey sign in to Borneo on Arc0 Connect, under your brand, and approve the access you ask for.
- 02You set the rulesReads run, writes like “create new asset” can wait for the user, and “delete dpia by id” can be denied outright.
- 03Any agent can actYour agent calls Borneo through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('borneo', { read: 'allow', write: 'ask', // create_new_asset destructive: 'deny', // delete_dpia_by_id }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Borneo connects.
Users sign in to Borneo on Arc0 Connect and approve the scopes you request. Build with Arc0’s Borneo OAuth app, or bring your own so the Borneo consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
The same Borneo connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- API key · OAuth 2.0
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Borneo from any agent.
More security and identity apps.
Borneo and Arc0, answered.
Can I use Borneo with Claude, ChatGPT or Cursor?
Yes. Connect Borneo to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Borneo actions you allow.
How do users connect Borneo?
Users sign in to Borneo on Arc0 Connect and approve the scopes you request. Build with Arc0’s Borneo OAuth app, or bring your own so the Borneo consent screen names you. Tokens refresh automatically, and you can export them whenever you want.
Which Borneo actions can my agent take?
153 in total: 72 read, 62 write and 19 destructive, such as “create new asset”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Borneo?
Yes. Actions like “delete dpia by id” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Borneo too?
Yes. The same Borneo connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Borneo into your agent.
Your users connect Borneo once, under your brand. Your agent gets 153 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan