PostHog

PostHog

PostHog is a major BYO-UI addition because one hosted MCP spans product analytics and SQL, feature flags and experiments, dashboards, error tracking and logs, surveys, CDP, data warehouse objects, and support workflows, with built-in session scoping controls.

Analytics, SEO & experimentationSystem of intelligenceAgent-accessible SaaSReverse ETL / activation
An illustration of access surfaces surrounding a governed system.
System roleSystem of intelligence
Access maturityAgent-accessible SaaS
MCP supportOfficial MCP server
Reference updatedNot stated by publisher
BYO-UI reviewedJul 22, 2026

Concrete capability record

Data, retrieval, actions, identity, and operating limits

A field-by-field summary of what the reviewed first-party references actually support. Publisher update dates and BYO-UI review dates are shown separately below.

01 · Records and state owned

Organizations and projects; events, persons, actions, cohorts, insights, dashboards, notebooks, and HogQL/SQL; feature flags, experiments, and early-access features; errors, logs, alerts, and annotations; surveys and support conversations; CDP functions and workflows; data warehouse sources, views, endpoints, and pipelines; plus AI-observability and agent-stack objects.

02 · Data you can retrieve

Query analytics and SQL; inspect schemas, events, persons, cohorts, insights, dashboards, replays, flags, experiments, errors, logs, surveys, CDP, warehouse assets, support conversations, and AI-observability data within the authenticated context.

03 · Actions and write paths

Create, update, launch, pause, archive, resolve, reply, materialize, or delete supported objects across flags, experiments, actions, cohorts, dashboards, alerts, annotations, error tracking, surveys, support tickets, CDP/workflows, warehouse views/endpoints/pipelines, settings, and other cataloged products.

04 · Authentication and permissions

OAuth is recommended and automatically routes the signed-in account to US or EU. Clients without OAuth can use a personal API key created with the project-scoped MCP Server preset; enterprise customers can use IdP-managed authorization. Sessions can also be pinned to an organization or project.

05 · Monitoring, approval, and recovery

PostHog advises reviewing tool calls for prompt-injection risk. Operators can exclude all writes with `readonly=true`, pin organization/project context, restrict feature categories, or expose exact tool names; BYO-UI should use those server controls before relying on conversational confirmation.

06 · Limits and caveats

MCP calls share PostHog API limits per team across all users and keys; some AI-powered tools have lower limits, require organization-level AI data processing, and may incur PostHog AI spend. The server has hundreds of tools, so most clients use token-optimized CLI mode; analytics results are returned to the AI client even though the MCP proxy does not store them.

Agent access

MCP support

Official MCP serverPostHog-hosted remote MCPCurrent hosted endpoint

Support: Official MCP server

Read scope: Product analytics/HogQL and schema discovery; persons, cohorts, dashboards, and replays; flags and experiments; errors and logs; surveys and support; CDP and warehouse assets; AI-observability and agent-stack inspection.

Write scope: Broad operational writes are documented, including feature and experiment lifecycle, dashboard/cohort/action management, error-triage rules and status, support replies, CDP/workflow and warehouse configuration, surveys, alerts, annotations, and project/user settings.

Authentication: Hosted OAuth with automatic US/EU routing; project-scoped personal API key fallback using the MCP Server preset; enterprise IdP-managed authorization option.

Approval boundary: PostHog does not present a universal MCP approval workflow; it tells users to review tool calls. For enforceable boundaries, configure read-only mode, pin the project, and filter to required features or tool names before the session; add BYO-UI confirmation for the remaining destructive or production-impacting calls.

Protocol does not erase product boundaries.

Confirm the current tool catalog, plan, region, scopes, rate limits, terms, and write behavior before implementation.

Editorial assessment

Access-maturity dimensions

A comparative architecture lens—not a quality score, market ranking, or buying recommendation. Scale: 1–5.

Data access4
Action access4
Event access1
Identity4
Governance4
Agent access4
UI extensibility3
Portability4
Observability3
Documentation4

Proposed customer-shaped experiences

What customers could create on top.

The output could be an export, report, graph, artifact, application, agent, workflow, or downstream feed. These proposals are derived from documented access—not claims that PostHog ships them.

Single-platform patterns

  • Product analytics, replay, and flag-management cockpit
  • Executive insight brief
  • Experiment review board
  • Anomaly investigation room
Use in the brief builder →

Multi-platform compositions

  • PostHog + warehouse or semantic layer: executive insight brief
  • PostHog + CRM or lifecycle platform + work-management system: cross-system decision workspace
Explore composition recipes →

Evidence and dates

First-party references, with publisher and review dates separated

“Publisher updated” is shown only when the page exposes an update date. “BYO-UI reviewed” records when this research checked the reference. A missing publisher date is reported as missing—not replaced with the review date.

6 recorded sources
MCPRepresentative source
https://posthog.com/docs/model-context-protocol ↗

Hosted endpoint and routing; cross-product reads/writes; catalog scale; OAuth/API-key/IdP auth; pinning, read-only, and tool filtering; rate, AI-spend, and result-flow limits

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 22, 2026

Full first-party MCP overview, tool-catalog, and operational-control review completed 2026-07-22

APISource inventory
https://posthog.com/docs/api ↗

First-party API reference or API overview recorded for this platform.

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 10, 2026

Inventory source: structurally normalized; content was not individually reopened in this pass.

HomepageSource inventory
https://posthog.com/ ↗

First-party product homepage used to confirm product identity and current positioning.

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 10, 2026

Inventory source: structurally normalized; content was not individually reopened in this pass.

Tool referenceSource inventory
https://posthog.com/docs/model-context-protocol/tools ↗

Exact tool names and read/write/lifecycle operations

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 22, 2026

Exact tool names and read/write/lifecycle operations reviewed from live first-party material on 2026-07-22.

MCP operations guideSource inventory
https://posthog.com/docs/model-context-protocol/faq ↗

MCP auth, permissions, exposure controls, limits, and privacy behavior

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 22, 2026

MCP auth, permissions, exposure controls, limits, and privacy behavior reviewed from live first-party material on 2026-07-22.

SQL / HogQL query accessTargeted review
PostHog SQL editor ↗

PostHog documents SQL and HogQL access across PostHog event, person, and connected external-source data. Ad-hoc query access is distinct from recurring bulk exports, which use batch-export capabilities.

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 12, 2026

Targeted first-party access review

Verified fact

Tied to cited first-party evidence reviewed for this profile.

Source inventory

Official links recorded for deeper research but not necessarily reopened endpoint by endpoint.

Editorial assessment

System role, maturity interpretation, and architectural boundary.

Proposed design

Interface patterns and compositions—not vendor product claims.