Where
Integrations→Integrations→Email Accounts
Your role needs
Read access to Email Accounts
read-senders. Admin, Member and Viewer have it by default.To create or change
create-senders to add one, update-senders to change one, on top of the permission above.If you cannot find this in your sidebar, your workspace may have a custom menu configuration. Contact support and we will check it for you.
Before you begin
- A Microsoft mailbox you can sign into. The sign-in goes to Microsoft’s shared sign-in endpoint, the one that serves both Outlook.com addresses and Microsoft 365 work or school accounts.
- On a work or school account, your tenant may require an administrator to approve access before anyone can grant it. See Troubleshooting below.
Connect the mailbox
1
Open the provider list
Go to and choose
Add senders, then Connect.Gmail and Outlook lead the list as the two featured cards, and Outlook’s carries a
1-click badge (1). Choose Outlook.Every other provider in the grid below asks for the mailbox password, and most of them
fill in the server settings for you. Outlook is the only card that asks for no password
at all.
2
Review what you're granting
Before the browser leaves the app, this screen lists what the mailbox will be used for:
sending emails on your behalf, reading replies so your AI agents can answer, and seeing
your name and email address.It also says plainly: “We never see your password, and you can disconnect anytime from
your Microsoft account.” Choose Continue with Microsoft when you’re ready.
3
Sign in and approve access
The next step happens on Microsoft’s own sign-in page, on Microsoft’s own domain. Sign in
with the mailbox you want to connect, then approve the access.Four permissions are requested, and Microsoft describes them in its own words: signing
you in and reading your basic profile, sending mail as you, read and write access to your
mailboxes over IMAP, and keeping that access after you close the browser. The last one is
what lets sending and reply-reading carry on without you signing in again. The IMAP
permission is wider than the “read replies” line on the previous screen: it is the
standard mailbox scope, not a replies-only one.
4
You're back
Microsoft sends you straight back to the app, onto the new account’s own page, with the
overlay on top confirming the connection. Choose Done to close it.
Add another sender goes back to the provider list instead.The confirmation does not name the mailbox it just connected. The address is on the
account page behind it.
What happens next
The mailbox is on the Email Accounts page, as Active if the connection tested clean.
Troubleshooting
The sign-in never brought you back
The sign-in never brought you back
An account is only created once Microsoft has handed over a token, so a sign-in you
cancelled, declined, or that failed for any other reason connects nothing and leaves
nothing to clean up.It also will not return you to the overlay. Instead of landing back on Email Accounts you
stop on an error page, with none of the wording above. That is the whole of the failure:
go back to and start again.
Your Microsoft administrator has to approve access first
Your Microsoft administrator has to approve access first
A Microsoft 365 tenant can require an administrator to approve an application before
anyone in the tenant is allowed to grant it access. Until that approval exists the
sign-in cannot finish, and no account is created.The fix is not on your side. Ask your administrator to approve access for the app, then
start again from the provider list. Nothing on this end needs undoing first.
The mailbox connected, then later shows Error
The mailbox connected, then later shows Error
Access granted once can be withdrawn later: the account is removed, the password
changes, or someone revokes access in Microsoft’s own security settings. A scheduled
check notices and moves the account to Error with “OAuth authorization is no longer
valid — the account may have been deleted or access revoked. Please reconnect.”Reconnect, in the red banner on the account’s own page, re-tests the access already
granted rather than opening a new sign-in. If the access still works the account
recovers. If it really was withdrawn, the account stays in Error with a message
starting “OAuth verification failed”, and the mailbox has to be connected again from the
start. See Fix an email account in Error.
Related
Add senders
Connect, import a CSV, or order managed infrastructure: how to choose between them.
Reconnect an account
What Reconnect actually does, and every Error message explained.
Email account statuses
Active, Paused and Error, and the chips that aren’t a status at all.
Connect Gmail or Google Workspace
The other featured provider, connected with an app password instead of a sign-in.