Integrations · Connected Apps

Third-party apps, acting with permission

Company admins register the apps your team builds or buys. Each member decides whether to allow one, reads exactly what it may do, and the app then works in their rooms as them — within the permissions they gave. One switch stops every app at once.

SRQ

Standup Relay wants to access your Qik Office account

Priya Shah priya@northwind.co
Northwind

This will let Standup Relay do 4 things:

  • See who you are — your name, photo and company
  • See your rooms and who is in them
  • !Send, edit and delete messages as you
  • Change your tasks — their status, checklists and backlog

You can remove this app at any time in Qik, under Settings › Connected apps.

Northwind rollout

Room chat

Waiting for consent

Nothing reaches the room until Priya allows the app.

Connected Apps

Company admin switch

AI project manager

Your tools and your agent share one room

What a connected app does in a room becomes part of the persistent shared state the AI project manager plans from, and what the agent produces is there for your tools to read.

  1. 01

    Messages join the conversation

    With permission to send messages, an app posts into the room chat, where it becomes part of the conversation the agent turns into actions.

  2. 02

    Task changes land on the board

    An app allowed to change tasks or sprints updates the same board the AI project manager plans and reports on.

  3. 03

    Minutes reach your tools

    An app allowed to see meetings can read the AI minutes the agent wrote, so action items flow on to the systems your team already runs.

Capabilities

Open to your software, on your terms

Connected Apps is OAuth for Qik Office: an admin registers the app, a member consents, and the app holds a scoped, expiring, revocable token.

One registration per integration

Owners and admins register up to 25 apps per company, so each integration asks only for the permissions it needs and staging can sit apart from production.

Server, browser or mobile

Server apps get a client secret shown once and rotated whenever you like; browser and mobile apps prove themselves with PKCE on every sign-in.

Consent in plain words

The permission screen names the app, the member and the company, and lists each permission as a sentence, with the most sensitive ones flagged.

Permissions as a ceiling

Nineteen permissions across seven groups. Narrow an app’s list and its tokens lose that permission on their very next request.

Acts as the member, within their rooms

An app sees only the company it was allowed in and works with that member’s room roles, so a guest’s app stays a guest.

Every authorization on record

Admins see who has allowed each app, can remove one person’s access, and can read the company’s activity trail for every app.

Try it

Register, review, remove

The three screens an admin and a member use to keep connected apps exactly where they want them.

App name

Forecast Sync

App type

Register an app

Admins pick the app type; server apps get a secret, browser apps use PKCE.

SR

Standup Relay

  • PSPriya ShahAllowed 14 Sep
  • DKDev KumarAllowed 22 Sep
  • AMAnna MoreauAllowed 2 Oct

3 people have allowed this app.

Who allowed it

See every member who allowed an app, and end one person’s access alone.

Settings › Connected apps

Apps you have allowed to use your Qik Office account on your behalf.

  • SR

    Standup Relay

    Northwind · Allowed 2026-09-14

    See your rooms and who is in themSend, edit and delete messages as you
  • FS

    Forecast Sync

    Northwind · Allowed 2026-10-01

    See your tasks

Every permission you gave is listed under its app.

Your connected apps

Members review what each app may do and remove it in one step.

Permissions

Choose what an app may ask for

The registration form and the consent screen are drawn from one list, so what an admin ticks is exactly what a member reads.

  • Grouped from least to most

    Identity first, then rooms, conversations, meetings, calendar and tasks, with Everything last — after the narrower options it replaces.

  • Sensitive lines flagged

    Reading messages, reading full transcripts and managing room members are marked on the consent screen so they are read before Allow.

  • Asking for more is explicit

    When an app later asks for an extra permission, the member sees a fresh screen naming only what is new.

  • Consent once, for up to a year

    An allowed app keeps working on one-hour tokens that renew quietly, within a consent that lasts up to a year.

ME

Minutes Export

Permissions this app may ask for

Your identity

Rooms and workspaces

Conversations

Meetings

Calendar

Sprints and tasks

Everything

What the member reads

This will let Minutes Export do 3 things:

  • See who you are — your name, photo and company
  • See your meetings, who attended and the minutes
  • See your tasks
Flow through the room

From consent to work in the room

A connected app is one more participant in the room, acting for the member who allowed it.

In practice

Who runs on Connected Apps

Engineering

Release notes in the right room

An internal tool posts each deploy into the project room, where the AI project manager picks it up with the rest of the conversation.

Operations

Your system of record, in sync

A server app reads the room’s tasks and updates their status from the system your operations team already runs.

IT & security

Third-party access with one switch

Register only the apps you approve, see who allowed each one, and turn Connected Apps off for the whole company in a single move.

Works with

One room, every app reading the same state

All room apps
Questions

Connected Apps, answered

Company owners and admins, from the company’s developer apps screen. They name the app, choose its type, add its redirect addresses and pick the permissions it may ask for.

Only what the member allowed on the consent screen, only in the company it was allowed in, and only in rooms that member can already reach with their own role.

In Settings › Connected apps, under Third-party apps. Remove ends the app’s access to their account straight away; they can allow it again later from the app.

Every connected app stops on its next request. Members’ consents are kept, so turning it back on lets the apps carry on without asking again.

It starts off. An admin turns it on in Apps & Integrations, so third-party access is always a deliberate company decision.

Connected Apps

Deploy an AI project manager with Connected Apps

Every agentic room comes with its apps and its AI project manager. Start free, or walk through it with us.