Skip to navigation

Reveal a website's manual connection secret

View as MarkdownOpen in Claude

Delivers the secret of a website’s manual connection. This is the only response that reveals it. Do not build the URL by hand: follow the reveal_url returned by “Retrieve a website’s manual connection credentials” exactly as it is, since it is a signed link that carries the parameters below.

This request needs no token: the signed link is the credential and Authorization is ignored. The link works once, however soon it is opened, and it expires. The member who requested it must still be allowed to read the secret when the link is opened, and every read is recorded in the organization’s activity.

Errors

  • 403: the signature is invalid, altered or expired (“Invalid signature.”), or the link was already used (“This link has already been used or has expired.”).
  • 404: the member lost access to the organization, or the permission to connect websites, after the link was issued.

Path parameters

site_idstringRequired

Query parameters

userstringOptional

Id of the member who requested the link. Part of the signature: never edit it.

noncestringOptional

Single-use token bound to that member. It is spent on the first successful read.

originstringOptional

Where the link was issued, public or mcp. It is recorded with the read and is part of the signature.

expiresstringOptional
Unix timestamp until which the signature is valid.
signaturestringOptional
Signature over the path and the parameters above. Never edit it.

Response

200 - Client secret revealed

jsonapiobjectOptional
metaobjectOptional

Errors

403
Forbidden Error