Connect AI lets you manage your websites, domains and email from the AI tool you already use, such as Claude Code, Cursor or Codex. The tool signs in as you, works only on what you choose, and asks you before anything risky.
What Connect AI Is
Once a tool is connected, you can ask it in plain words to do things on your KapsuleHost account, such as reading an error log, deploying a site or adding a mailbox. The tool talks to KapsuleHost over MCP, an open standard many AI tools support.
There is no key to copy. You sign in with your normal KapsuleHost account in your browser. Your password, passkey and two-factor code are only ever entered there, never in the AI tool.
Before You Start
- You need a passkey or an authenticator app on your account. If you have neither, KPanel asks you to set one up first. See Account Security.
- Owners and Admins can connect a tool that makes changes. Billing, Support and Viewer members can connect a tool that only reads.
Connect a Tool
- In KPanel, open Account Settings, then Connected AI, and choose Connect a Tool. You can also click Connect AI on a website, domain or mailbox page.
- Choose Your Tool: Claude Code, Claude Desktop, Cursor, VS Code, Codex or Other MCP Client.
- Choose What It Can Reach: This Website Only, This Domain Only, This Mailbox Only or My Whole Account. The tool can do nothing outside what you choose.
- Add the tool with the one step KPanel shows you. For Claude Code that is one command in your terminal, for example:
claude mcp add --transport http northbay-bakery https://mcp.kapsulehost.com/site/nb7k2q
For Codex, use Copy Command. For Cursor and VS Code, use Add to Cursor or Add to VS Code. For Claude Desktop, use Show Steps. For any other tool, use Copy Address and add it as a remote MCP server.
- Your browser opens. Sign in to KPanel, check what the tool is asking for, and allow it with your passkey or authenticator code.
How Ask Me Works
Every connection uses Ask Me. Reading and everyday safe changes run straight away, such as reading logs or purging a cache.
Risky actions wait for you: deleting things, transferring a domain away, cancelling a service, anything that costs money, and changes that could break your site or email, such as DNS records and mail forwarding.
When a tool asks for one of these, nothing happens yet:
- You see the request in KPanel. If approval emails are on, we email you too, but the email only links to KPanel. It cannot approve anything, so a tool that can read your mailbox still cannot approve its own request.
- The request shows what will change, which tool asked, and the reason the tool gave. That reason is labelled as text from the AI tool.
- Approve it with your passkey or authenticator code, every time. A text message code cannot approve. Click Decline to say no; declining needs no code.
A request you do nothing about expires after 24 hours and does not run. If a request is not something you expected, choose Decline and Disconnect Claude Code. That declines it and revokes the tool at once. The button names whichever tool asked.
What a Tool Can Never Reach
Whatever you choose, no AI tool can reach:
- your password, passkeys and two-factor settings
- your sign in sessions
- API keys
- SSH, SFTP, database and mailbox passwords and keys
- team members and their roles
- Connected AI settings
- payment methods
- closing your account
See Activity and Revoke
Open Account Settings, then Connected AI, to see every connected tool.
- Activity shows what a tool did, and your activity log names the tool behind each change.
- Revoke signs one tool out at once. Anything it was waiting on is cancelled.
- Revoke All signs every tool out at once.
Signing Out Disconnects Every Tool
Every connected tool is signed out automatically when you:
- change or reset your password
- reset two-factor authentication
- sign out everywhere
A connection also ends after 30 days without use, and after 90 days in all. When that happens, the tool opens your browser and asks you to sign in again.