> ## Documentation Index
> Fetch the complete documentation index at: https://docs.cassidyai.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Manage Connectors for your organization

> Control which Connectors your organization can use, which actions are enabled, and when people must approve external actions.

Decide which business apps your organization's [Agents](/agents/overview),
[Skills](/skills/overview), and [Workflow](/workflows/overview) AI actions can
reach, which actions are allowed, and when actions need a person's approval.

<Info>
  You need the **Manage Connectors** privilege to change these settings, and the
  **Manage Organization Settings** privilege for the **Controls** page. In many
  organizations, Admins have both by default. See [Assign roles and
  groups](/settings/roles-and-groups#connector-privileges).
</Info>

## Common setups

* **Let people use everything, but ask before changes** — Leave Connectors
  enabled and set the organization approval default to **Ask before changes**.
* **Read-only for now** — Open each Connector's **Action permissions** and turn
  off its write actions. Set **New actions** to **Turn on read actions only**.
* **Pause one app** — Open the Connector and choose **Disable for everyone**.
  Connections and settings are kept for when you enable it again.

## Open Connector management

<Steps>
  <Step title="Open organization settings">
    Open your account menu from the sidebar and select **Organization
    Settings**.
  </Step>

  <Step title="Open Connectors">
    Select **Connectors** in the organization settings sidebar.
  </Step>

  <Step title="Choose a Connector">
    Use the **All**, **Built-in**, and **Custom Connectors** tabs to find the
    Connector you want to manage.

    <Frame>
      <img src="https://mintcdn.com/cassidy/3DfxV-bTMzCFmNrU/images/settings/org-connectors-catalog.png?fit=max&auto=format&n=3DfxV-bTMzCFmNrU&q=85&s=63a43ae4d4a7a5bb62353bcd4e0e95ea" alt="Organization Connectors catalog with All, Built-in, and Custom Connectors tabs showing Enabled, Disabled, and Restricted statuses" width="2602" height="1886" data-path="images/settings/org-connectors-catalog.png" />
    </Frame>
  </Step>
</Steps>

## Connector statuses

* **Enabled** — Anyone with the right role privilege can use the Connector.
* **Restricted** — A Custom Connector is shared only with selected people or
  groups.
* **Disabled** — Nobody can use the Connector. Connections and settings are
  kept.

Disabled beats everything else. No role privilege or access rule can grant
access to a disabled Connector.

## Enable or disable a Connector

Open a Connector and use its status menu to enable or disable it for everyone.

Built-in Connectors use [role privileges](#control-access-with-roles) to decide
who can connect them. Custom Connectors are shared with the whole organization
or with selected people and groups, like other shared resources.

## Control what a connector can do

Open a Connector to manage which actions are available and when approval is
required.

<Frame>
  <img src="https://mintcdn.com/cassidy/3DfxV-bTMzCFmNrU/images/settings/org-connector-detail.png?fit=max&auto=format&n=3DfxV-bTMzCFmNrU&q=85&s=ddf933d1aa6fc230c29bd9a0b4808468" alt="Organization Connector detail page for Outlook showing Action permissions, New actions, and Action approvals controls" width="2624" height="1898" data-path="images/settings/org-connector-detail.png" />
</Frame>

## Action permissions

Use **Action permissions** to turn individual actions on or off for everyone.
Built-in Connectors group actions into categories specific to the app. Custom
Connectors use Read, Write, and Other categories.

An action that is off can't be used by any Agent, Skill, or Workflow.

<Frame>
  <img src="https://mintcdn.com/cassidy/3DfxV-bTMzCFmNrU/images/settings/org-connector-action-permissions.png?fit=max&auto=format&n=3DfxV-bTMzCFmNrU&q=85&s=e3a1a33d480bd792d74bd860b7c19e7e" alt="Action permissions modal for an organization Connector with action categories and per-action toggles" width="2624" height="1898" data-path="images/settings/org-connector-action-permissions.png" />
</Frame>

## New actions

Use **New actions** to decide what happens when a Connector adds actions:

* **Turn on** — New read and write actions are on.
* **Turn on read actions only** — New read actions are on; other new actions
  are off.
* **Turn off** — Every new action is off until you review it.

## Action approvals

Use **Action approvals** to set the least approval anyone can choose for this
Connector's actions:

* **Organization default** — Follow the [organization
  default](#set-the-organization-approval-default).
* **Ask every time** — Every action needs approval.
* **Ask before changes** — Reading is allowed. Changes need approval, so
  Workflows can't run them.
* **No extra approval** — Agents and people keep their own settings.

<Frame>
  <img src="https://mintcdn.com/cassidy/3DfxV-bTMzCFmNrU/images/settings/org-connector-action-approvals.png?fit=max&auto=format&n=3DfxV-bTMzCFmNrU&q=85&s=6107609af07d4b9fe11a012c2891ec19" alt="Action approvals dropdown on an organization Connector showing Organization default, Ask every time, Ask before changes, and No extra approval" width="1922" height="1282" data-path="images/settings/org-connector-action-approvals.png" />
</Frame>

People can add approval on top of this setting, but can't remove it.

## Set the organization approval default

Open **Organization Settings** → **Controls** → **Connector approvals** to set
the default used by Connectors on **Organization default**. The options are the
same: **No extra approval**, **Ask before changes**, and **Ask every time**.

<Frame>
  <img src="https://mintcdn.com/cassidy/3DfxV-bTMzCFmNrU/images/settings/org-controls-connector-approvals.png?fit=max&auto=format&n=3DfxV-bTMzCFmNrU&q=85&s=82c9db449ce65cf2ead9761c68e276ff" alt="Connector approvals setting on the Organization Controls page with No extra approval, Ask before changes, and Ask every time options" width="2374" height="650" data-path="images/settings/org-controls-connector-approvals.png" />
</Frame>

## Control Connector suggestions in chat

The **Connector discovery** toggle on the same **Controls** page decides whether
Agents may suggest a relevant Connector during a chat — for example, offering
the Asana Connector when someone asks about their Asana tasks. It is on by
default.

A suggestion never connects an app on its own. The person in the chat chooses
**Add** or **Not now**, and nothing is shared with the app until they connect it
and an action runs. See [Connector suggestions in
chat](/agents/connectors/overview#connector-suggestions-in-chat) for what
people see.

Suggestions respect every other control on this page. Agents only suggest
Connectors that are enabled, that the person has the [role
privilege](#control-access-with-roles) to connect, and that aren't already
active in the Agent or connected in the person's own settings. Suggestions
appear only in the Cassidy web app.

Turning **Connector discovery** off removes the suggestions and changes nothing
else.

## Control access with roles

Use roles to decide which built-in Connectors a person can connect:

* Grant **Agent Connectors** for access to every enabled built-in Connector.
* Grant an individual Connector privilege for access to only that app.
* Grant **Custom connectors** to let someone connect their own account to
  Custom Connectors shared with them.
* Grant **Manage Connectors** only to people who should change these settings
  and create, edit, share, or delete Custom Connectors.

Learn how to [assign Connector privileges with roles](/settings/roles-and-groups#connector-privileges).

For setting up a Custom Connector, see [Custom
Connectors](/agents/connectors/mcp-servers).

## Next steps

<CardGroup cols={2}>
  <Card title="Assign roles and groups" icon="users-gear" href="/settings/roles-and-groups">
    Grant Connector privileges through managed or custom roles.
  </Card>

  <Card title="Connect and manage business apps" icon="plug" href="/agents/connectors/overview">
    See how your team connects and uses Connectors day to day.
  </Card>
</CardGroup>
