These disclosures cover the hosted Light RFP Surety Bonds MCP service at mcp.lightrfp.com. They are not a complete provider inventory for Light RFP's procurement platform, website marketing, or full application workflows. For those services or contract-specific information, contact cyrus@lightrfp.com.
Vercel — hosting and service protection
Vercel processes MCP requests to run the service, deliver responses, maintain hosting/security records, and enforce traffic protection. This can include request and network metadata such as the calling platform's IP address. Search text is processed to answer the request; avoid personal information in free text.
PostHog — operational analytics
PostHog processes allowlisted MCP operational events for service reliability and usage analysis. Fields include tool name, timing, outcome, bounded error category, result/link counts, server version, recognized client labels, and operational request/session identifiers. Raw queries, arguments, responses, full URLs, applicant information, and credentials are excluded. Person profiles and geolocation are disabled; analytics IP is suppressed. This configuration is separate from website analytics.
Retention, requests, and other services
See the MCP section of the Light RFP Privacy Policy for retention, access/deletion requests, and the separate website/application journey. MCP operational analytics currently has no fixed automatic age-based deletion period and may remain for longer than 12 months; hosting/security records have separate retention. This page does not promise a particular processing location or contractual transfer mechanism beyond the applicable agreements.
The connector uses a stored catalog; it does not send live searches or applicant data to the application provider. The AI client chosen by the user processes its own conversation under its own terms. GitHub hosts our public documentation and examples, not the MCP request-processing service.
Privacy questions: cyrus@lightrfp.com. MCP technical support: David@lightrfp.com.
