- Help Center
- Integrations and API
- Connectors and API keys (BYOK)
About 5 min read
Connectors and API keys (BYOK)
Connecting external tools, storing keys safely, and why agents only see what your workspace allows.
On this page
Connectors
Connectors bridge your workspace to email, calendars, chat providers, or internal APIs. Enable only what your security review approves.
Secrets and BYOK
- Store provider keys in workspace secret surfaces rather than in chat transcripts.
- Rotate keys on the provider first, then update the workspace to avoid downtime.
Least privilege
Grant API scopes that match the agent’s actual job. Over-scoped keys increase blast radius if a prompt is tricked into exfiltrating data.
Related articles
- What to do right after you sign up — A short checklist after you create an account: confirm email, pick or wait for your workspace, and open the product for the first time.
- Workspaces explained — How a workspace relates to your company account, why you might have more than one, and where your agents and data live.
- Sign in, SSO, and launch links — How sign-in works with the control plane, branded workspace URLs, and secure handoff into your tenant runtime.
- Members, invites, and roles — Inviting colleagues, what new members should expect on first visit, and keeping access aligned with how your team works.
- Billing, plans, and invoices — Where billing is managed, how usage-related charges may appear, and how to get help when something looks wrong on an invoice.
- Help Center home