Interactive OAuth
Recommended for people using an MCP client
- Add the production MCP URL without an Authorization header.
- Your client discovers XY authorization and opens a secure browser page.
- Sign in to XY, confirm the selected organization, review the effective access, and approve or deny it.
- Return to the client. It completes the connection and refreshes access as needed without exposing an API key to you.
Interactive sign-in and user access must be enabled for your organization. Contact XY if an OAuth-capable client cannot begin authorization.
claude mcp add --transport http --scope user xy 'https://mcp.xy.ai/mcp'{
"mcpServers": {
"xy": {
"type": "http",
"url": "https://mcp.xy.ai/mcp"
}
}
}