1. Register an app in Microsoft Entra
Go to entra.microsoft.com Identity Applications App registrations New registration.
Click Register, then note down:
- Application (client) ID
- Directory (tenant) ID
2. Configure authentication
In your app registration, go to Authentication Add Redirect URI Web. Add these three redirect URIs:3. Create a client secret
Go to Certificates & secrets Client secrets New client secret. Add a description and expiration, then click Add. Copy the “Value” column immediately (it won’t be visible again).4. Add API permissions
Go to API permissions Add a permission APIs my organization uses, search for Power BI Service, select Delegated permissions and check:Dataset.Read.AllReport.Read.AllDashboard.Read.AllWorkspace.Read.All
5. Enable the MCP feature in Power BI
Go to app.fabric.microsoft.com Settings Admin portal Tenant settings Integration settings, and enable:- “Users can use the Power BI Model Context Protocol server endpoint (preview)“
6. Connect in Dust
In Dust, go to a Space Dev tools MCP Servers Add a remote MCP server. Server URL:
Replace
{TENANT_ID} with your Directory (tenant) ID.
Important: the scope must use analysis.windows.net, not api.fabric.microsoft.com.
The offline_access scope allows Dust to automatically refresh the authentication token in the background, so users don’t have to re-authenticate every time the token expires (typically after one hour).
Save, authenticate with your Microsoft account, and the tools will appear.