Setup
You need a Pipedream workspace with Connect and a project in it. From its API settings, create OAuth client credentials — one pair per Conduit workspace. Then enter into Conduit:- Client ID and secret — the secret is write-only and stored encrypted, like every credential Conduit holds.
- Project ID and environment (development or production).
Slack to a group the way you’d
grant any connector, or grant all apps and let members enable what they need.
The policy editor searches the app catalog directly.
How Conduit authenticates to Pipedream
Conduit exchanges the workspace’s client credentials at Pipedream’s token endpoint for a short-lived, workspace-scoped access token, caches it, and re-mints it as needed — the standard OAuth client-credentials grant. This token authenticates Conduit itself (tool listing and calls, the app catalog, account management); it is never handed to browsers or AI clients.How members connect their app accounts
Connecting an app account is a per-member action, from the Connectors page — or directly from their AI client, which guides the member to the same place:- Conduit mints a short-lived, single-use Connect token scoped to the member and hands it to the browser.
- The browser opens Pipedream’s connect flow, where the member authorizes the app on the app’s own consent screen (standard OAuth between Pipedream and the app).
- Pipedream stores the resulting credential in its vault, keyed to the member’s Conduit identity. Conduit then verifies with Pipedream that the account actually exists — the browser’s word is not trusted — and refreshes the member’s tool lists.
How tool calls carry identity
When a member’s client calls an app tool, Conduit forwards the call to Pipedream’s MCP endpoint with headers identifying the workspace’s project and environment, the calling user, and the apps the caller’s policy resolution permits. Pipedream uses the user identity to fetch that member’s credential from its vault — so every call executes as the person who made it, and one member’s Slack tools can never post as another’s. These headers are set by Conduit from workspace configuration and the authenticated session, on every call. They cannot be overridden: connector configuration rejects header names in the gateway-identity namespace, so neither an admin nor a member can supply a different user or project by configuration.Network path
Conduit reaches exactly two Pipedream hosts — the API (token minting, Connect tokens, account management, the app catalog) and the MCP endpoint (tool listing and calls) — and the member’s browser loads the connect flow frompipedream.com.
Network Access lists all of them precisely,
and the
private-endpoints guide
covers consuming both hosts over a private endpoint such as AWS PrivateLink —
supported at the application level with one environment variable.