Before you start
Choose a provider in the integration catalog and a project you can configure. Set a Veryfront API credential; provider credentials do not authenticate requests to Veryfront. Use the provider’s documented authentication model. OAuth needs a consent flow, while API-key and client-credentials integrations need the listed environment variables.1. Check the integration
CallGET /integrations to inspect the catalog available to your credential:
list-integrations.sh
VERYFRONT_EXPERIMENTAL_INTEGRATIONS in the project environment, set to all or selected integration names.
2. Authorize provider access
Choose the branch that matches the provider.OAuth connections
Create a short-lived handoff withPOST /oauth/connect/session. This example connects GitHub for the current user within support-assistant:
create-oauth-session.sh
connect_url in a browser before expires_at, then complete provider consent. The example returns to Veryfront afterward. Custom return URLs must be allowed by the deployment.
Creating a handoff does not complete authorization. Use scope: "project" only when you intend a shared project connection and have the required project permission.
API keys and client credentials
Set the variables named in the provider reference. For example, Stripe usesSTRIPE_SECRET_KEY.
Set ENVIRONMENT_ID to the environment where the integration executes, then call POST /projects/{project_reference}/environment-variables:
set-provider-credential.sh
3. Verify the connection
For OAuth, list the connected accounts withGET /connections:
list-connections.sh