MCPGetting started
MCP authentication
Connect through OAuth and manage access.
MCP uses OAuth 2.1 with the posteady:full scope instead of a workspace API key. Add Posteady in your client and sign in on the authorization screen. The client handles authorization and refresh; you do not need to copy tokens manually.
Permissions and workspaces
Creator or above is required. Current workspace roles and operation permissions are checked after connection as well. For multiple workspaces, see the tool-specific workspaceId rules.
Token lifetimes
| Type | Lifetime |
|---|---|
| Access token | 1 hour |
| Refresh token | 30 days |
| Authorization code | 10 minutes |
If the client can no longer refresh access, authorize the connection again. Revoke access from connected apps in Posteady settings when needed.
Connect a client · Connection troubleshooting · REST API key authentication