Interfaces

Connected Apps

Preview

A Connected App is an external application you've granted access to DigitalStack. It runs through your own identity and permissions — and DigitalStack never holds the application's own credentials.

Preview

Claude is connectable today. Connecting an app requires signing in — your credentials and identity never leave DigitalStack.

What can connect

AI clients

Claude today, with more MCP-compatible assistants on the way.

Customer-built apps

Applications your team builds that act on behalf of a user.

Enterprise integrations

Internal systems connecting through delegated OAuth.

Supported clients

Claude

Available

Claude Desktop, Claude Code, and the Claude web app.

ChatGPT

Planned

OpenAI ChatGPT connectors.

Cursor & IDE clients

Planned

Cursor, VS Code, and other MCP-compatible editors.

GitHub

Planned

Repositories, issues, and pull requests.

Other MCP clients

Planned

Any MCP-compatible application.

What a connection represents

A grant carries the following. Some management details are still coming — those are marked Planned rather than shown as empty UI.

Application identity

Which application is connected.

Available
Granted access

Scope-bound access: agent:read for context/project tools, plus separately granted Time Management scopes for confirmed entries, timers, submission, and eligible approval decisions.

Available
Connection status

The management page shows the real identity-level state (verified, needs recovery, disconnected, or not connected). The Supported Clients list below shows which clients currently use that one shared identity — it is not a list of independently-connected apps.

Available
Revocation (per app)

Disconnecting one specific Connected App is not available — and can't be, on the current data model. federated_identities has unique(issuer, subject) with no client/application id in the key, so any disconnect revokes the caller's whole delegated identity — shared by every Connected App using the same identity provider — not one app's grant. Per-Connected-App revocation needs a client/grant-scoped identity model that doesn't exist yet, a blocking prerequisite once more than one app is simultaneously connectable. A real self-service control for the identity-wide disconnect does exist today (see 'Delegated access disconnect' below).

Planned
Delegated access disconnect

Self-service "Disconnect DigitalStack access" on the management page revokes your whole delegated identity (every Connected App using it) in one action. A self-initiated disconnect is reconnect-eligible afterward through the normal connect flow, with no administrator needed.

Available
Self-authorization visibility

You can see that you authorized your own delegated access, when, and its current status, on the management page.

Available
Authorizing user (team view)

A broader, admin/team-facing management view of who on the team authorized each connection — distinct from seeing your own authorization (see Self-authorization visibility, which is real today).

Planned
Accessible resources

Per-resource restrictions beyond scopes.

Planned
Last authenticated activity

When your delegated identity last successfully authenticated a request, shown on the management page (approximate, throttled to roughly every 10 minutes). This reflects successful authentication, not a confirmed, fully-authorized API call — per-route scope/capability checks still happen afterward — and it is never an exact request log.

Available
Governed by your permissions
  • • A connected app can never gain more access than the authorizing user has.
  • • Access is scoped. Context and project tools are read-only; Time Management writes require dedicated scopes, explicit confirmation, and DigitalStack domain authorization.
  • • You can disconnect your whole delegated identity from the management page at any time; disconnecting one specific Connected App is still planned.

Manage your connections

Launch the connection flow to link a client to your workspace. You'll be asked to sign in first.

Connect an app