Create a narrow connection
Start from the Integrations workspace. Choose only the capabilities the client needs and review the consent screen before authorizing it.
Verify before mutation
Confirm the site, account, scopes, and current record before asking a client to change content. Reachability or authentication alone is not proof that a write succeeded.
Revoke cleanly
Remove unused clients and tokens from the same Integrations workspace. A revoked client must be reauthorized before it can access the site again.