- Credentials are stored encrypted, scoped to the org or overridden per space.
- OAuth-based connectors handle the grant flow from the space’s Connections page.
- Custom MCP/OpenAPI connections can be added per deployment.
Encrypted credentials require
COCO_SETTINGS_ENCRYPTION_KEY on the API runtime. See Operations.