Schemas
CompleteConnectRequest
stateThe opaque connect state nonce that resolves the pending connection.
codeThe provider authorization code, on a successful callback.
errorThe provider error code, on an error callback (e.g. access_denied).
issueIdentifierThe issuer identifier from the authorization response, validated against the one recorded at initiate (RFC 9207).
CompleteConnectResponse
connectionIdThe connection's id.
redirectUrlThe fully-built URL to redirect the browser back to: the consumer's validated returnUrl carrying the new connection.
statusThe lifecycle state of a connection.
Connection
connectorIdThe connector this connection is to.
createdAtWhen the connection was created.
idThe connection's id.
principalIdThe principal the connection is authorized for.
statusThe lifecycle state of a connection.
updatedAtWhen the connection last changed.
Connector
callSurfaceThe protocol a connection to this connector is called with.
displayNameHuman-readable name shown to the connecting user.
idStable connector identifier, used when initiating a connection.
kindThe kind of connector.
Display/merchandising metadata for a connector.
scopesThe scopes this connector declares; a connect may request a subset.
ConnectorDeveloper
nameThe developer's name.
urlThe developer's homepage.
ConnectorError
Value of the Sqsp-Connector-Error response header. Present on failures the connector service generates itself; absent on a pass-through response relaying a third party's answer.
ConnectorLinks
privacyPolicyThe vendor's privacy policy.
supportThe vendor's support/help center.
websiteThe vendor's homepage.
ConnectorMetadata
descriptionThe connector's one-line description; empty when none is on file yet.
Who publishes the connector; empty when not on file yet.
iconUrlThe connector's icon; empty when none is on file yet.
Outbound links for a connector's detail view; each empty when not on file.
ErrorResponse
codeMachine-readable error code returned by the catalogue and connect operations.
errorIdCorrelation id for a failure the caller cannot act on. Quote it when reporting the error; it appears in the service log alongside the stack trace. Present on unattributable server failures; absent on client errors and on 501.
messageHuman-readable description, safe to log; never contains secrets.
Grant
callerThe permitted caller: the consumer-named agent or service that makes calls through this connection.
GrantConnectionAccessRequest
callerThe caller to permit: the consumer-named agent or service that will make calls through this connection.
InitiateConnectRequest
connectorIdThe connector to connect, from the catalogue.
returnUrl(?i)https?://\S+ · requiredWhere the browser is returned after connecting; validated against the consumer's returnUrl origin allowlist.
connectionId\S+An existing connection to reconnect in place. Omit to create a new connection.
scopesThe scopes to request; must be a subset of the connector's declared scopes. Omit to request the connector's declared scopes. An empty array means the same as omitting it — there is no way to request no scopes at all.
InitiateConnectResponse
authorizeUrlThe fully-built provider authorization URL to redirect the browser to.
connectionIdThe connection id; the sole handle for later token resolution.
ListConnectionsResponse
The matching connections.
ListConnectorsResponse
The permitted connectors.
ListGrantsResponse
The grants on the connection.