Ally logo

Communicorp UK

Ally Control Centre

Sign in with Microsoft Entra to administer the Ally ChatGPT for Work App, unified MCP, publishing, and access policy.

Login with Ally (CCUK)
Ally logo

Communicorp UK

Ally Control Centre

ChatGPT for Work

Overview ChatGPT App MCP Tools Access & RBAC OAuth & Entra Monitoring Releases Publishing Platform operations
Current environment Ally Production ally2.ccuk.media Active · Entra RBAC enforced
Rollback endpoint retained Ally test remains isolated on ally3.ccuk.media during acceptance.
Loading Checking Session Operator

Overview

Operational summary and governance status for the production Ally ChatGPT App.

Loading platform summary.

App lifecycle

Production promotion
  1. 1DraftApp package
  2. 2ConnectedMCP + OAuth
  3. 3TestedRBAC validation
  4. 4Workspace releaseSelected users

System health

View monitoring →
ChatGPT App connection Connected Unified MCP endpoint Healthy OAuth / Microsoft Entra Healthy Role assignment (RBAC) Enforced HubSpot connectivity Healthy

Recent ChatGPT tool activity

View all →
TimeToolStatus

Permission coverage

View details →
100%Mapped

5 Entra application roles
0 governed MCP tools
0 unclassified writes

Production release

Ally
Domain
ally2.ccuk.media
MCP endpoint
/mcp
Source
Reviewed commit shown by runtime readback
Runtime
Loading current release…
Rollback
Isolated Ally test remains at ally3.ccuk.media during acceptance.

Review-first action queue

0 items
PriorityActionSourceDetail

Connection overview

ChatGPT AppChatGPT for WorkConnected
RBAC enforced
Microsoft EntraOAuth 2.0 / OpenID ConnectHealthy
RBAC enforced
Unified Ally + HubSpot + Signals MCPally2.ccuk.media/mcpHealthy
Ally services + HubSpotGoverned read/write servicesHealthy

RBAC matrix

Full matrix →

ChatGPT App

Private workspace App identity, connection contract, and user experience.

Connected

Ally

Production
Product
ChatGPT for Work App
Description
Unified Ally, HubSpot, and Ally Signals workflows through one governed app.
App ID
asdk_app_6a60ad772eec819197621de2bb605dca
Authentication
Microsoft Entra OAuth with per-user RBAC claims

User experience contract

One App, one MCP

Ally, HubSpot, and Signals tools are presented through one connector in ChatGPT.

Ready
Read-first governance

Reads are the default; writes require the appropriate role and explicit confirmation.

Enforced
Per-user identity

Every call is authorised using the signed-in employee's Entra access token, including forwarded Signals requests.

Enforced

Access & RBAC

Effective Entra roles and Ally permissions for the ChatGPT App.

RBAC enforced

Effective role matrix

Application roles · least privilege
CapabilityViewerOperatorManagerDeveloperAdmin
View App and tool catalogue✓✓✓✓✓
Run read tools✓✓✓✓✓
Review governed actions—✓✓✓✓
Approve external writes——✓✓✓
Manage integrations and jobs———✓✓
Manage users and roles————✓

OAuth & Entra

OAuth compliance and Microsoft Entra application configuration.

Healthy

Resource application

Audience
https://ally2.ccuk.media/mcp
Delegated scope
ally.read
Assignment required
Yes
Token enforcement
Issuer, audience, signature, expiry, scope, and role

OAuth compliance

Protected resource metadata PublishedAuthorization server metadata PublishedPKCE S256 RequiredChatGPT callback RegisteredClient secret Key Vault

Publishing

Workspace release readiness for the private Ally ChatGPT App.

Admin review
1Package

Ally App metadata and migrated Custom GPT behaviour validated.

2Connect

Production HTTPS MCP and Entra OAuth connected in ChatGPT.

3Test

Ally, HubSpot, Signals, and RBAC acceptance tests passed.

4Release

Workspace administrator selects the pilot users or groups.

Open promotion runbookOpen App in ChatGPT

Operations

Jobs, syncs, MCP activity, and action queue

Jobs

Feature checks

Syncs

Identity and caches

MCP Activity

0 calls
Time Status Action Detail

Action Queue

Review-first writes

Open GitHub Issues

Loading
Issue Labels Assignee Updated

Monitoring

Health checks and dependencies

Main Service GitHub CI

No webhook yet

Service Health

0 services
Service Status Owner Environment Version Detail

Dependencies

0 dependencies
Dependency Status Owner Purpose Detail

Watchlists

Operational exceptions

Renewal Risk

0 records
Company Risk Owner Territory Reasons

Data Quality

0 records
Record Severity System Issue Owner

Tools

MCP catalogue

0 tools
Name Mode Risk Permissions Usage Purpose

Knowledge

Documentation centre

Document Summary Source

Releases

Current version and flags

Current Release

Loading

Feature Flags

0 flags

Release History

Rollback and migration notes
Version Date Status Summary Rollback

Estate

Services and relationships

Service Health Owner URL Context Keys

Service Relationships

0 relationships

Admin

Users, roles, permissions, and audit

RBAC enforced

User Management

Loading

Roles

0 roles

Permissions

0 permissions
Permission Area Description

Audit Log

0 events
Time User Action Service Status Detail