PostHog logoChatGPT logo
PostHog · ChatGPT

Connect PostHog to ChatGPT. For your whole team.

The official PostHog MCP runs on a personal API key, and the key preset its docs point to grants write access on nearly everything: feature flags, persons, recordings. Loopthink holds one read-only key pinned to one project, gives every ChatGPT user in your team their own login, and lets Product, Engineering and Management ask the questions their role allows.

Free for your own server · Team from €99 · EU-hosted

The problem

PostHog in a chat client, today.

Today a team that wants PostHog in an AI client either invites everyone to the project or passes one personal API key around. Person profiles carry emails and distinct IDs, so a shared key sends them to the model with every question. And the MCP server can create, enable and disable feature flags, so a typo in a chat becomes a change in production.

Who may do what

One matrix for PostHog. Roles across, tools down.

ToolProductEngineeringManagement
Insights & trends Product may use Insights & trendsEngineering may use Insights & trendsManagement may use Insights & trends
Events & persons Product may use Events & personsEngineering may not use Events & personsManagement may not use Events & persons
Feature flags Product may use Feature flagsEngineering may use Feature flagsManagement may not use Feature flags
Session recordings Product may use Session recordingsEngineering may not use Session recordingsManagement may not use Session recordings
Error tracking Product may use Error trackingEngineering may use Error trackingManagement may not use Error tracking
Write actions off by defaultProduct may not use Write actionsEngineering may not use Write actionsManagement may not use Write actions

Masked for every role: person emails and distinct IDs, IP addresses, session recording links.

You set this once. Every ChatGPT user in your team gets exactly this.

How to connect

Once on the PostHog side, once in ChatGPT.

PostHog logo

On the PostHog side

Personal API key, read scopes, one project

  1. 1

    PostHog → Settings → Personal API keys → Create personal API key. Skip the MCP Server preset; it grants write scopes.

  2. 2

    Hand-pick read scopes: insight:read, query:read, feature_flag:read, error_tracking:read, session_recording:read, project:read. Organisation and project access: the one project your team uses.

  3. 3

    Copy the key once and paste it into Loopthink. It stays on our side; the team only ever sees tools.

ChatGPT logo

In ChatGPT

Custom connector, OAuth

  1. 1

    An admin turns on Developer mode: Settings → Apps → Advanced settings. On Enterprise and Edu, admins first grant it under Permissions & Roles → Connected Data.

  2. 2

    Workspace settings → Apps → Create: paste your Loopthink connector URL, choose OAuth, click Scan Tools, then Create. Publish the draft under Workspace settings → Apps → Drafts.

  3. 3

    Each team member picks Loopthink from the tools menu in a chat, or @mentions it, and signs in once with their own account.

Full MCP apps are available on ChatGPT Business, Enterprise and Edu; Pro can connect read-only MCP servers in developer mode. Published apps show up in every member's Apps settings with the label custom.

Steps checked against the vendor documentation on 17 September 2026: PostHog MCP server · MCP tools · Personal API keys · Developer mode and MCP apps in ChatGPT · Connectors in ChatGPT

Loopthink sits in between: it holds the key, shows ChatGPT a normal login, and applies your roles on every call.

What you get

Four checks between ChatGPT and PostHog.

  1. 01

    Identify

    OIDC/SSO against your own IdP, including Microsoft Entra. The call runs as the person who made it, never as a shared service account.

  2. 02

    Authorize

    Per-role, per-tool, read or write. Anything not explicitly granted never shows up in the tool list in the first place.

  3. 03

    Mask

    Field-level masking and pseudonymization applied on your side, before the result travels. The model never sees the raw field. Composio, AnythingMCP and both provider tunnels have no field-level masking at all.

  4. 04

    Log

    Who asked, which tool, which records, which fields were masked. One audit trail across every AI client, exportable for review.

Use cases

What people actually ask ChatGPT about PostHog.

  • Product

    “Which feature flags are rolled out to more than half of users right now?”

  • Engineering

    “How many errors of type TypeError since yesterday's release, and on which page?”

  • Management

    “Weekly active users this month versus last month?”

Each question runs as the person who asked it, with that person's role. A Engineering colleague asking the Product question gets the tools their own role allows, not an error, not more.

Compare

Four ways to put PostHog into ChatGPT.

Native PostHog connectorBuild it yourselfEnterprise gateways1Loopthink
Per-user identityOne personal login, all its rightsOnly if you build itYesYes, every call runs as the person who asked
Tool-level rolesNoYour codeYesYes, write off by default
Field maskingNoYour codeNot documentedYes, before the model sees the data
Published priceIncluded in your PostHog planYour engineers' timeContact salesFree, Team from €99
EU companyNoWhatever you areMostly USYes, Germany

Native PostHog connector: Official PostHog MCP with OAuth or a personal API key. One person's key, write on flags, persons and recordings unless you add the read-only switch yourself.

1 MintMCP, MCP Manager, Pomerium

Coming from one of them? Composio alternative · MintMCP alternative · MCP Manager alternative · AnythingMCP alternative

FAQ

Before you connect.

Does every team member need their own PostHog account?
No. Loopthink holds one key or token for PostHog. Your people sign in to Loopthink with their own identity, and every call to PostHog is logged under their name. Seats in PostHog stay where they are today.
Who has to add the connector in ChatGPT?
One person with the right to add connectors in your ChatGPT workspace, once. After that every team member enables it for themselves. Nobody pastes a key, nobody edits a config file.
Where does the PostHog key live?
In Loopthink, encrypted, in the EU. It never reaches ChatGPT and never reaches the people using the connector. Rotate it in PostHog whenever you like and paste the new one once.
Can somebody write to PostHog from the chat?
Not unless you switch it on. Write actions are a separate row in the permission matrix and are off for every role by default. If a role needs one write tool, you grant that one tool to that one role.
What does the model see?
The result of the tool call, after masking. Fields you mark as personal, such as emails, names or card details, are masked before the answer travels to ChatGPT. The model gets the numbers, not the people.
Is there an audit trail?
Yes. Who asked, which tool, which parameters, which fields were masked, when. One log across every client your team uses, exportable for review.
What does it cost?
Free for one person and your own MCP server, forever. Team starts at €99 per month and covers the built connector, per-person identity, roles, masking and audit for the whole team. Prices are on the pricing page, no call needed.
We already run our own MCP server for PostHog. Does it still work?
Yes. Point it at Loopthink and it inherits the same login, roles, masking and audit. Nothing on the server has to change.

PostHog in ChatGPT, with rules.

One key in Loopthink, one login per person, one matrix that decides who may do what.

Free for your own server · Team from €99 · EU-hosted