Builder mode
Connectors
Link Hermes to apps you already use, see the servers running inside your agent, and know what a connection lets it do.
A connector links Hermes to an app you already use, such as Notion, GitHub or Slack, so your agent can look things up there and act in it for you. SettingsConnectors lists the apps you can connect, and SettingsLocal servers shows the extra tools running inside your agent.
Opening Connectors
Open SettingsConnectors (open it). In builder mode it's under "Customize" in the Settings list, and the section is described as "Connect remote MCP servers. Credentials are encrypted at rest." MCP is the standard your agent uses to talk to these apps.
The apps are shown as cards, grouped under headings such as "Productivity" and "Research". Each card has the app's icon and name, a tag for how it connects ("OAuth", "API key" or "Public"), a one-line description and a button.
The apps you can connect
| Group | App | Tag | What it's for |
|---|---|---|---|
| Productivity | Notion | OAuth | Read and update pages and databases |
| Productivity | Linear | OAuth | Issues, projects and cycles |
| Productivity | Atlassian | OAuth | Jira issues and Confluence pages |
| Productivity | Asana | OAuth | Tasks, projects and team workflows |
| Productivity | ClickUp | OAuth | Tasks, docs and goals across your workspace |
| Productivity | Attio | OAuth | A CRM for relationships and workflows |
| Productivity | Composio | OAuth | Gmail, Outlook, Calendar and 1,000+ more apps through your Composio account, which holds those sign-ins |
| Productivity | Todoist | OAuth | Tasks, projects and reminders |
| Productivity | Calendly | OAuth | Booking links, free slots and scheduled meetings |
| Productivity | Dropbox | OAuth | Find, read, save and share files |
| Productivity | Airtable | OAuth | Bases, tables and records |
| Productivity | Tally | OAuth | Build forms and read their responses |
| Developer tools | GitHub | API key | Repos, issues, pull requests and workflows |
| Developer tools | GitLab | API key | Projects, merge requests and pipelines |
| Developer tools | Cloudflare | OAuth | Workers, D1, R2, KV and Pages |
| Developer tools | Sentry | OAuth | Errors, releases and performance issues |
| Developer tools | Context7 | Public | Up-to-date library docs and code examples |
| Developer tools | Exa | Public | Web search built for AI agents |
| Developer tools | Clerk | OAuth | User and organisation data from your Clerk app |
| Developer tools | Supabase | OAuth | Database, auth, storage and edge functions |
| Communication | Slack | API key | Channels, messages and users |
| Communication | Otter.ai | OAuth | Your meeting transcripts and summaries |
| Communication | Fireflies | OAuth | Meeting transcripts, summaries and action items |
| Communication | Buffer | OAuth | Schedule and publish social posts, and read post stats. Posts go out publicly. |
| Design | Canva | OAuth | Generate, edit and export designs |
| Design | Figma | API key | Frames, components and design tokens |
| Design | Cloudinary | OAuth | Assets, transformations and uploads |
| Design | Miro | OAuth | Boards, sticky notes and diagrams |
| Design | Gamma | OAuth | Turn notes into decks, docs and web pages. Uses your Gamma credits. |
| Data & analytics | Amplitude | OAuth | Product analytics: events, funnels and retention |
| Data & analytics | Google BigQuery | API key | Query datasets and tables |
| Data & analytics | PostHog | OAuth | Product analytics: events, funnels, insights and SQL |
| Finance | Stripe | OAuth | Payments, customers, subscriptions and disputes |
| Finance | CoinMarketCap | API key | Crypto prices, listings and market data |
| Finance | Crypto.com | Public | Public market data, no sign-in |
| Finance | Kite (Zerodha) | Public | Public market data for Indian equities and derivatives |
| Finance | PayPal | OAuth | Invoices, payments, refunds and subscriptions. Can move money from your PayPal account. |
| Research | OpenAlex | OAuth | Research papers, authors, citations and journals |
| Research | treg | OAuth | Paid tools for search, scraping, enrichment and image generation. Uses your treg credits. |
Three ways to connect
The tag on each card tells you what connecting asks for:
| Tag | What you do |
|---|---|
| "OAuth" | Sign in to the app on its own site and approve access. There's no key to copy. |
| "API key" | Paste a key or token that you create in the app. |
| "Public" | Nothing. It connects straight away. |
Signing in
For a card tagged "OAuth":
- Press "Connect". It reads "Redirecting…" and your browser goes to the app's own site.
- Sign in there and approve access.
- You land back on SettingsConnectors. The card shows "● connected", and a notice asks you to restart Hermes (see Loading the change).
- If you cancel, or the sign-in fails, you come back to Connectors with a message that the connection failed. Press "Connect" to try again.
- If you leave the app's site without finishing, the card shows "● awaiting auth" and its button reads "Retry connect".
- Expiring sign-ins are renewed for you every day at 04:30 UTC, so you normally don't need to sign in again.
With an API key
For a card tagged "API key":
- Press "Connect". A dialog headed "Connect" and the app's name opens. It reads "Paste an API key or personal access token. It's encrypted at rest and only sent to" the app, with a hint on where to get one (below).
- Paste the key into the box. What you type is hidden.
- Press "Connect" in the dialog. It reads "Connecting…".
MyHermes tests the key with the app before saving it. If the app turns it down, nothing is saved: the dialog closes and a message at the top of the list asks you to check the key. "Cancel" closes the dialog without connecting.
| App | Where the card says to get a key |
|---|---|
| GitHub | "Fine-grained PAT from github.com/settings/tokens" |
| GitLab | "Personal access token from gitlab.com/-/profile/personal_access_tokens" |
| Slack | "User OAuth token from api.slack.com/apps" |
| Figma | "Personal access token from figma.com/settings" |
| Google BigQuery | "OAuth access token with bigquery scope" |
| CoinMarketCap | "API key from pro.coinmarketcap.com/account" |
Public connectors
For a card tagged "Public", press "Connect". There's nothing to sign in to: the card shows "● connected" and the restart notice appears.
Loading the change
After you connect or disconnect an app, a notice appears: the connector's name and "updated. Restart Hermes to load the change.", with a "Restart Hermes" button and a "✕" to dismiss it. After a sign-in it names "MCP server" rather than the app; after a disconnect it uses the app's short lowercase name, such as "openalex".
- Press "Restart Hermes". It reads "Restarting…", then the notice closes.
- Close Settings to follow the restart. The banner at the top of the dashboard sits behind the Settings dialog, so you only see it once Settings is closed. It says your agent is restarting and messaging is paused, then "Your agent is back and ready."
MyHermes also tries to hand the change to your agent by itself when you connect or disconnect, but that doesn't always get through. Pressing "Restart Hermes" makes sure your agent loads it.
Status and reconnecting
| The card shows | What it means | What to do |
|---|---|---|
| "● connected" | MyHermes has the app saved as connected | Nothing. "Disconnect" removes it. |
| "● awaiting auth" | A sign-in was started but never finished | Press "Retry connect" |
| "● error" | MyHermes couldn't finish the sign-in, or couldn't renew access later | Press "Reconnect" and sign in again |
| No status | Not connected | Press "Connect" |
- "● connected" is the saved state. It isn't re-checked each time your agent uses the app.
- To disconnect, press "Disconnect" (it reads "Disconnecting…"). There's no confirmation. Then restart Hermes from the notice.
If an app shows connected but doesn't work
Because "● connected" isn't a live check, a connection can look fine while your agent's calls to it fail. To fix it:
- Press "Disconnect".
- Press "Connect" and sign in again, or paste the key again.
- Press "Restart Hermes" in the notice.
The Troubleshooting guide covers other problems.
Local servers
SettingsLocal servers (open it) is described as "MCP servers that run inside your agent." It's a list you read; you don't add servers here.
- To add or remove one, ask Hermes in the chat, for example "add the time MCP server" or "remove the memory MCP".
- Each card shows the server's name, a tag, "● connected" when it's active, and the command it runs or the address it uses. Parts of a command that look like secrets are masked.
- The tag is "stdio" for a server that runs as a program inside your agent, or "remote" for one your agent reaches over the web.
- With none yet, the list says there are no local MCP servers yet and suggests asking Hermes in the chat.
The plan limit
Mini can have 4 local servers active at once and Pro 12. Only "stdio" servers count; "remote" ones and the apps you connect under Connectors don't.
- When your agent starts, the first servers in its configuration, up to your plan's limit, stay active.
- The rest are marked inactive as over the plan limit, and a line above the list says how many are inactive.
What a connected app lets your agent do
- Your agent decides when to use it, the same way it uses its other tools, and acts with the access you approved when you signed in, or with whatever the key allows.
- Some apps act in public or move money. Buffer's posts go out publicly, and PayPal can move money from your PayPal account. Connect those only if you're happy for your agent to do that.
- Some apps spend on their own service. Gamma and treg use your credits with them, and OpenAlex uses your OpenAlex account's own budget. None of these come out of your MyHermes credits.
- For Todoist, Calendly, Dropbox and Buffer, MyHermes asks for a fixed, narrower set of permissions than those apps offer.
- For an API key, you choose the access. Create a key that can do only what you want your agent to do, for example a fine-grained GitHub token limited to a few repositories.
Where your credentials live
- The app's own sign-in or key stays with MyHermes, encrypted. It isn't written into your agent's configuration.
- Your agent reaches each app through MyHermes, which adds the stored credential to every call.
- Your agent's configuration does hold a key it uses to reach MyHermes for these calls. That configuration is included in Backups.
- To cut off access, press "Disconnect" and restart Hermes. You can also revoke access, or delete the key, in the app itself.
Common questions
Can I connect an app that isn't in the list?
Not from Connectors: it only offers the apps listed above. For tools that run inside your agent, ask Hermes in the chat to add a local server (see Local servers).
Do I have to restart after every change?
Press "Restart Hermes" after connecting or disconnecting. MyHermes tries to load the change by itself, but the restart makes sure.
Why does a connected app stop working after a while?
If MyHermes couldn't renew access, the card shows "● error": press "Reconnect". If it still says "● connected", follow If an app shows connected but doesn't work.
What's next
- Connect OpenAlex: a step-by-step example of connecting an app and using it.
- Skills: other ways to give your agent new abilities.
- Backups: what's in a backup, including the key your agent uses for connectors.