Skip to content
Last updated

Dropbox integration

Dropbox is a cloud storage and collaboration platform for storing, syncing, and sharing files and folders.

It can be connected to Agen.co two ways, matching the Official / In-house filter in the connector picker:

  • Official — Agen.co connects through Dropbox's own hosted MCP server (https://mcp.dropbox.com/mcp), so your AI agents use the same file, search, and sharing tools Dropbox exposes to MCP clients like Claude. Authorization uses a Dropbox app that you register yourself.
  • In-house — Agen.co wraps the Dropbox API directly through its own integration layer, using an OAuth 2.0 app you register in the Dropbox App Console.

Pick Official if the built-in MCP tools cover what your agents need. Fall back to In-house if you need the Dropbox API surface beyond them.


Connect via the official MCP server

Prerequisites

  • A Dropbox account that can create apps in the Dropbox App Console. On a Dropbox team, your admin may control whether you can register or connect apps.

Get the callback URLs from Agen.co

Dropbox refuses dynamic client registration from clients outside its partner list, so you register your own Dropbox app and give Agen.co its App key and App secret. The app needs Agen.co's callback URLs, so start in Agen.co.

  1. In the Agen.co portal, go to Connectors → My connectors and click Add connector.
  2. Find Dropbox and select it.
  3. In the Add Dropbox panel, keep the Official tab selected. The panel shows two read-only URLs at the bottom — copy both:
    • Callback URL — completes the initial OAuth handshake between Agen.co and your Dropbox app.
    • Gateway callback URL — used by the Agen.co MCP gateway for per-user authorization at runtime.

Leave this panel open — you return to it after registering the app in Dropbox.

Register the app in Dropbox

  1. In the Dropbox App Console, click Create app.
  2. Select Scoped access, then Full Dropbox, enter a name (for example, Agen.co), and click Create app.
  3. On the Settings tab, copy the App key, and click Show next to App secret to copy it.
  4. In the OAuth 2 section, add both callback URLs from Agen.co under Redirect URIs, clicking Add after each. Each URI is saved as soon as you add it. Still under OAuth 2, set Allow public clients (Implicit Grant & PKCE) to Allow.
  5. Open the Permissions tab, enable the following scopes under Individual Scopes, and click Submit:
ScopeDescription
account_info.readRead basic account information
files.metadata.readList files and folders and read their metadata
files.metadata.writeUpdate file and folder metadata
files.content.readDownload and read file content
files.content.writeCreate, upload, move, copy, and delete files and folders
sharing.readRead sharing settings and shared links
sharing.writeCreate and manage shared links
file_requests.readRead file requests
file_requests.writeCreate and manage file requests

In the App Console, a read scope is disabled while its matching write scope is enabled, because the write scope already includes read access.

Enable the scopes before you connect

Agen.co requests the scopes the Dropbox MCP server publishes. If a scope is not enabled on the Permissions tab, Dropbox cannot grant it during sign-in, so enable all of them before you click Connect.

Connect Dropbox in Agen.co

A new Dropbox app starts in Development status, which limits how many Dropbox users can connect to it until the app is moved to production.

Return to the open Add Dropbox panel and fill in the fields:

FieldRequiredDescription
Instance SlugYesNamespaces this instance — it prefixes each imported tool as slug__tool, so several instances of the same MCP can coexist. Use lowercase kebab-case. You can change it later from the connector's settings.
Client IDYesThe App key from your Dropbox app.
Client SecretYesThe App secret from your Dropbox app.
Callback URL—Read-only. Add it as a redirect URI in your Dropbox app.
Gateway callback URL—Read-only. Also add it as a redirect URI — the MCP gateway uses it for per-user authorization at runtime.
  1. Click Connect. You are redirected to Dropbox to sign in and approve access.
  2. After you approve, the panel switches to Select the tools to import from Dropbox. Every tool is on by default; turn off any you do not want your agents to see.
  3. Click Add. The connector is created and the selected tools are imported only when you click Add — if you close the panel first, nothing is saved, even if the Dropbox callback page reported success.

What it covers

AreaWhat it covers
Files and foldersBrowse, read, create, copy, move, and delete files and folders
SearchFind files and folders
ContentExtract file content as text, Markdown, or transcripts
RevisionsList and restore file revisions
SharingCreate and manage shared links

Content extraction is limited to 5 MB per file, and a folder listing returns at most 100 items per call. Tool availability follows Dropbox's own list and can change.

Enabling the Dropbox connector isn't enough on its own. Tool calls remain denied until you create a policy that grants access to the specific tools you want to expose.

Connect via the in-house integration

Prerequisites

Connect Dropbox

Step 1: Open the Dropbox App Console

Navigate to dropbox.com/developers/apps. Sign in with your Dropbox account if prompted. You will see your list of existing apps. Click Create app.

Dropbox App Console

Step 2: Choose the Scoped access API

On the Create a new app on the DBX Platform page, select Scoped access under step 1. This is the recommended API type that gives your app fine-grained control over the permissions it requests.

Dropbox create app — choose API

Step 3: Configure app settings and create the app

Under step 2, select Full Dropbox to allow your app to access all files and folders in the user's Dropbox.

Under step 3, enter a name for your app (for example, Frontegg Integration), then click Create app.

Dropbox create app — access type and name

Step 4: Copy your App key

After the app is created, you land on the Settings tab. Find the App key field — this is your OAuth 2.0 Client ID. Copy it for use in the Frontegg portal.

Dropbox App key

Step 5: Copy your App secret

Next to the App secret field, click Show. Copy the revealed secret for use in the Frontegg portal.

Keep your credentials secure

Store the App secret immediately after copying it. Never share or commit it to version control.

Dropbox App secret

Step 6: Add redirect URIs

Scroll down to the OAuth 2 section. In the Redirect URIs field, enter the following URIs one at a time and click Add after each:

  • https://YOUR_MCP_GATEWAY_URL/integration-callback

Dropbox redirect URI entry

Step 7: Confirm redirect URIs saved

The redirect URI appears as a saved entry in the Redirect URIs section.

Dropbox redirect URIs saved

Step 8: Configure permissions

Click the Permissions tab. In the Individual Scopes section, enable the following scopes:

ScopeDescription
account_info.readView basic account information (username, email, country)
files.metadata.readView information about files and folders
files.content.writeUpload, create, and delete files and folders
files.content.readDownload files and view folder contents
sharing.writeManage sharing settings and shared links
sharing.readView sharing settings and collaborators
file_requests.writeCreate and manage file requests
file_requests.readView file requests
contacts.readView manually added Dropbox contacts

Click Submit to save the permissions.

Dropbox permissions configuration

Step 9: Permissions saved

A confirmation banner appears: Permissions change successful. Your app is now fully configured.

Dropbox permissions saved

Configure the Frontegg portal

Once you have your App key and App secret, configure the integration in the Frontegg portal:

  1. Open the Frontegg portal and navigate to [ENVIRONMENT] → Integrations → Dropbox.
  2. Enter the App key in the Client ID field and the App secret in the Client Secret field.
  3. Select the required scopes.
  4. Click Save.

Additional resources