Start Here
Five steps from a fresh PolicyArc account to your first policy-governed MCP client call. The first two steps are quick; the last three branch by provider — pick the one that matches your environment.
Before you begin
You need:
- A PolicyArc dashboard account — request one at policyarc.com/contact during the beta.
- An external identity provider to authenticate your users. PolicyArc supports Google, Microsoft Entra, and Atlassian today. GitHub and Okta are on the roadmap — tell us if you need them sooner.
- An MCP client installed on at least one developer machine — Claude Code, Claude Desktop, Cursor, or VS Code (with GitHub Copilot Chat).
You don't install PolicyArc. The dashboard provisions the Authorization Server, OPA policy engine, and Gateway for you.
Step 1 — Sign in to the dashboard
Navigate to the dashboard URL you received in your welcome email and authenticate with the mechanism your organization uses (most setups use OIDC SSO).
You'll land on your Environments page — empty on a fresh account.
Why this step: The dashboard is your control plane. One account, one tenant, isolated from every other PolicyArc tenant.