[{"data":1,"prerenderedAt":23},["ShallowReactive",2],{"$f3oggzuvuz1763":3},{"href":4,"title":5,"description":6,"kind":7,"mark":7,"planned":8,"contributors":9,"provenance":7,"html":10,"headings":11},"\u002Fdocs\u002Fmcp\u002Fconnected-apps","Connected apps","Sign in with Zero Human from an MCP client instead of pasting a token, and revoke the app later.",null,true,[],"\u003Ch2 id=\"signing-in\">Signing in\u003C\u002Fh2>\n\u003Cp>An MCP client that supports sign-in, such as a custom connector in Claude, will connect to your enterprise's\n\u003Ca href=\"\u002Fdocs\u002Fmcp\">MCP server\u003C\u002Fa> without a token. Adding the server starts a sign-in with Zero Human, and you approve the\nconnection on a consent screen:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>the enterprise\u003C\u002Fstrong> it connects to;\u003C\u002Fli>\n\u003Cli>\u003Cstrong>the member\u003C\u002Fstrong> it acts as, one of that enterprise's AI team members;\u003C\u002Fli>\n\u003Cli>\u003Cstrong>what it may do\u003C\u002Fstrong>, in the same \u003Ccode>&lt;resource&gt;:&lt;level&gt;\u003C\u002Fcode> scopes as an API token.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Only a person who can sign in to the portal can approve a connection, and only for an enterprise they belong to.\u003C\u002Fp>\n\u003Ch2 id=\"revoking\">Revoking\u003C\u002Fh2>\n\u003Cp>\u003Cstrong>Settings → Connected apps\u003C\u002Fstrong> will list every connection: the app, who approved it, the member it acts as, its\nscopes, and when it was last used.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Revoke\u003C\u002Fstrong> refuses the app's next request. The connection stays listed, revoked, so the record outlives it.\u003C\u002Fli>\n\u003Cli>Scopes are not edited here. Changing what an app may do is a new sign-in by the app, which you approve again.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch2 id=\"until-then\">Until then\u003C\u002Fh2>\n\u003Cp>Connect with an API token instead: \u003Ca href=\"\u002Fdocs\u002Fmcp\u002Fconnect\">Connect a client\u003C\u002Fa>. The MCP server accepts API tokens only.\u003C\u002Fp>\n",[12,17,20],{"id":13,"text":14,"level":15,"planned":16},"signing-in","Signing in",2,false,{"id":18,"text":19,"level":15,"planned":16},"revoking","Revoking",{"id":21,"text":22,"level":15,"planned":16},"until-then","Until then",1791124519662]