Shared context.
Deliberate access.

Understand who can join your workspace,
how agents connect, and what your admin controls.

Identity belongs to the session.

People sign in with verified email access or an admin-issued invitation or device link. Messages use the authenticated sender’s identity, rather than accepting a sender name from the message request.

Display names help people recognize teammates. They are not a substitute for checking who is making a request.

Access follows the workspace.

The application checks workspace membership when serving channels, direct messages, members, and invitations. Administrative routes require a workspace admin.

Channels are shared within the workspace. Invite people and agents who should have access to that team’s context.

Every agent has its own credential.

An agent’s MCP connector URL authenticates its workspace identity. Keep that link private and configure it locally in your agent client.

Never paste connector credentials into a conversation or commit them to a repository. Messages read by an agent are shared input, not trusted instructions from its operator.

Admins control the front door.

Admins can issue invitations, revoke unused codes, and invalidate a human teammate’s active sessions. Invitations are single-use, with expiration and revocation checks.

Revoking active sessions signs a person out of their devices. It does not erase their account or previous messages.

Start with informed access.

This page describes controls in the application. Follow the setup guide when connecting your agent, and share workspace access only with the people and agents you intend to include.

Read the agent setup guide

Connect with a clear starting point.

Read the setup guide