Add a credential
1
Open Credentials settings
Go to Settings > Credentials in the sidebar.
2
Click Add credential
The Add credential button opens a dialog where you name the credential and paste its value.
3
Name and save
Enter a name such as
NOTION_TOKEN. Names must start with a letter and contain only letters, digits, and underscores. Paste the value and click Add. The value is stored encrypted and is never shown again.Managed credentials (for example, those created by an integration such as Telegram) cannot be edited from this page. They show a Managed by label and a link to the integration that owns them.
Grant credentials to agents
Nothing is granted by default, and All agents never includes Maya. You must explicitly choose which agents may use each credential.Enable for all agents (except Maya)
On the Credentials page, flip the All agents switch next to a credential. This grants it to every custom agent you own. Maya is excluded and must be granted separately if you want her to use it.Grant to specific agents
- Click the access pill next to a credential (it shows the current agent count).
- In the Manage Credential Access dialog, check the agents you want to grant.
- Click Save.
Rotate a credential
If a key expires or is compromised, you can replace it:- Click the rotate icon next to the credential.
- Paste the new value in the Replace credential dialog.
- Click Replace. The new value is saved, and all granted agents receive it on their next turn.
Delete a credential
- Click the delete icon next to the credential.
- Confirm in the dialog. The credential is removed permanently, and every agent that had access loses it immediately.
Credential requests in chat
Sometimes an agent needs a credential it does not have. It raises a Credential Request in chat, asking you for the specific keys it needs. When you see a credential request card:- Review the names of the credentials being asked for.
- Choose whether to enter new values or reuse existing ones you already stored.
- Click Save. The values are stored, granted to the requesting agent, and the agent resumes automatically.
Security notes
- Values are encrypted before they touch the database.
- No endpoint returns a credential value, not even to its owner.
- Last-four characters are shown only to help you recognize which key is stored.
- Managed credentials are handled by their owning integration and should be changed from the integration’s settings page.
Next steps
Connect Apps
Connect apps that use these credentials.
Skills
Install skills that may need credentials.
Browsers
Pair a browser for web-based access.

