Solutions · Legal
Control where your agents share privileged files.
Give your agents access to privileged files for research and drafting. Set policies that allow updates to the matter team’s page and block writes to client-shared pages after those files are read.
Why: privileged case file read by the same identity.
Both servers connect through Wicket.
Choose which sharing attempts to block.
Use these policies to let your agents read the records they need while blocking their writes to the destinations below.
- Client updates
A research agent reads a privileged case file, then tries to publish its summary to a page shared with the client.
Reads a privileged case fileDocument management MCP · privileged read✓ AllowPublishes to a client-shared pageNotion MCP · shared page✗ DenyPolicyBlock writes to pages shared with clients after the same identity reads privileged files.
- Deal rooms
A drafting agent reads a confidential deal memo in Confluence, then tries to post a summary to a Slack channel shared with the other side.
Reads a confidential deal memoConfluence MCP · confidential space✓ AllowPosts to a shared external channelSlack MCP · external members✗ DenyPolicyBlock posts to channels with external members after the same identity reads confidential data.
- Discovery vendors
A review agent reads privileged documents for a production set, then tries to copy them into a vendor’s Airtable base.
Reads privileged documentsDocument management MCP · privileged read✓ AllowCopies into a vendor’s baseAirtable MCP · external base✗ DenyPolicyBlock writes to external bases after the same identity reads privileged documents.
Set sharing rules for each matter.
Let your agents research and draft with privileged files, then restrict sharing outside your matter team. Test your draft policy against the last 24 hours of calls before enforcing it.
- 01
Connect the document system
Run your document management system’s MCP server behind Wicket, with Confluence, Notion, Slack, and Airtable.
- 02
Choose the matters to protect
Scope your read policy to privileged matters and confidential deal spaces. Leave public filings outside that policy.
- 03
Restrict client and counterparty sharing
After an identity reads privileged files, block its writes to pages shared with clients and posts to Slack channels with external members.
- 04
Block vendor uploads
Block writes to vendor and external bases after the same identity reads privileged documents.
See which attempts to share were blocked.
Each denial records the agent, the attorney it acted for, the earlier privileged read, and the rule that applied. Your general counsel can see the attempted action and why it was blocked.
- Who
- research-agent · OBO m.okafor@firm.example
- What
- notion.create_page → client-shared page
- When
- 16:05:52 UTC · Notion MCP
- After
- dms.get_document · privileged case file · 16:03:11 UTC
- Why
- block-shared-after-privileged-read — privileged read matched earlier for this identity
Other solutions
- Financial services Control where your agents share customer financials.
- Healthcare Keep your agents’ patient updates with the care team.
- Software Let your agents debug private code. Block public posts.
Tell us what your agents need to access.
Wicket applies policies using earlier policy matches for the same identity. It does not classify message contents, and both MCP servers must connect through Wicket. We’ll help you plan custom MCP connections during onboarding.