Skip to content

Connected agents

View Markdown

When an MCP client such as Claude Code, Cursor or Codex connects to Nodus, the consent page asks you to pick an org and the scopes the client may use. Nodus records that choice as an OAuth grant. The client can do only what the grant allows, and never more than your own role in that org. It cannot create API keys or other grants.

A client is connected to one org at a time. Approving it again, for any org, replaces the earlier grant.

Console › Settings › Connected agents lists each client with its scopes and when it was last used. Or:

Terminal window
nodus get oauthgrants

You see your own grants. Admins and Owners see every member’s grants in the org.

Terminal window
nodus delete oauthgrant claude-code-3fa2c1

The client stops working within 30 seconds, even with an access token it already holds. A grant also lapses 30 days after its last use, and removing a member from the org disconnects all of their clients there.