Govern every workbook in one question.
The Boreon MCP Layer scans every workbook and data source on Tableau Server or Tableau Cloud through Tableau’s own APIs, read-only, and answers in plain words. Then it explains the site itself: failed jobs, node status and how-to answers.
Governance in one question
Scan our site for PII and PHI.
Reading Tableau · every workbook and data source · read-only
- PII and PHI, calculated fields and custom SQL included
- Passwords and keys left in connections or formulas
- Content nobody opens, users who never sign in
- Over-permissioned content and duplicate data sources
What one question finds
The Boreon MCP Layer downloads every workbook and data source definition, beyond what the Catalog indexes, which brings formulas and custom SQL into the scan.
- PII and PHI scan. Every workbook and data source, calculated fields and custom SQL included.
- Leaked credentials. Passwords and keys left in connections or formulas.
- Stale and unused. Content nobody opens, and users who never sign in.
- Over-shared. Over-permissioned content, duplicate data sources, and data sources nothing uses.

The rest of the picture
Governance analyses that sit beside the scan, each answered in plain words.
- Stale content
- Unused content
- Heaviest content
- Inactive users
- Refresh health
- Duplicate data sources
- Data sources nothing uses
- External connections
- Over-permissioned content
Run Tableau without the guesswork
For the Tableau admin, the Boreon MCP Layer reads what used to live in separate consoles and explains it in plain words.
- TSM, read for you. On Tableau Server, with your TSM credentials: process status on every node, and the error lines that matter from a bounded log bundle.
- Failed jobs, explained. Extract refreshes and subscriptions that failed, and why, in plain words.
- Answers from the docs. How-to answers grounded in about 3,000 pages of official Tableau help.
- Six languages. English, Japanese, German, French, Italian and Russian.
Where each capability runs
The Boreon MCP Layer covers Tableau Server and Tableau Cloud, and reads TSM wherever there is a TSM to read.
| Tableau Server | Tableau Cloud | |
|---|---|---|
| Governance scans | Every workbook and data source | Every workbook and data source |
| Failed jobs, explained | Extract refreshes and subscriptions | Extract refreshes and subscriptions |
| Node status and errors | Every node, read through TSM | Run by Tableau, as part of Tableau Cloud |
| How-to answers | About 3,000 pages of official Tableau help | About 3,000 pages of official Tableau help |
| Answers in line | Live tables, views, Pulse and lineage | Live tables, views, Pulse and lineage |
Questions about governance and operations
What site admins and governance teams ask.
What does the scan cover?
Does scanning change anything?
Does it work on Tableau Cloud?
What does it read from TSM?
Where do the how-to answers come from?
Ask your own Tableau, live.
Bring one question from your Tableau Server or Tableau Cloud site. The Boreon MCP Layer will answer it in line, on the model you choose.