LegoTechApps authentication
Give each LegoTechApps integration only the access it needs.
Public API and MCP discovery require no credentials. Customer business operations require a scoped key created by an authorized dashboard user.
Create a scoped key
Create a scoped key
Sign in to LegoTechApps, open AI connections, choose the business and permitted modules, keep the key read-only unless writes are necessary, and create the key. The full secret is shown only when created.
Dashboard → AI connections → New connectionSend and store it safely
Send and store it safely
Send the key as an Authorization bearer token to the authenticated MCP endpoint. Store it in a secret manager or environment variable; never place it in client-side code, URLs, public prompts or source control.
Authorization: Bearer <scoped-key>Revoke and rotate
Revoke and rotate
Revoke a connection from the dashboard when a device, agent or teammate no longer needs it. Reconnection does not silently restart bots, replay actions or expand permissions.
Authenticated endpoint: https://legotechapps.com/lt/api/mcpStart here
Use the live contract.
Run legotech doctor before automating a workflow, follow the published schemas, and contact developer support when a required business operation is not documented.