Choose an integration path
MCP clients normally connect to the workspace’s
/mcp endpoint. A personal access token acts as its owner and remains limited by that person’s permissions and the token’s scopes. OAuth authorization code is appropriate when each person must sign in and consent separately. Do not use OAuth client_credentials for an integration that must respect a particular user’s access.