How to connect Signpath to Claude Cowork

Trusted by teams atAWSGleanZoomAirtable

30 min · no commitment · see it on your stack

Signpath logo
Claude Cowork logo
divider

Introduction

Cowork is Anthropic's AI agent for knowledge work. Think of it as Claude Code for everything else. It works autonomously with your computer, local files, and applications to accomplish complex tasks.

This guide walks you through the easiest and most secure way to connect your Signpath account to Cowork via Composio Connect, enabling it to list all available code signing certificates, show all projects for your organization, get details of current signing policies, and more such actions on your behalf without compromising your account security.

Also integrate Signpath with

Connecting Signpath to Claude Cowork

1. Open Customize

In Claude Desktop, click Customize in the left sidebar, then select Connectors and click the + icon at the top.

Claude Desktop connectors screen with Add custom connector selected

2. Add the Composio MCP server

Click Add custom connector and paste in the Composio MCP server URL:

bash
https://connect.composio.dev/mcp
Add custom connector dialog with Composio MCP server URL

3. Authorize in your browser

Click Connect. You'll be redirected to a browser window where you can authorize Composio to continue.

Composio authorization screen for Claude Cowork

4. Connect your Signpath account

Back in Cowork, ask the agent to connect to Signpath or give it any Signpath-related task.

For example, ask Cowork to:

  • "List all available code signing certificates"
  • "Show all projects for your organization"
  • "Get details of current signing policies"

It will prompt you to authenticate and authorize access.

That's it. Composio's tools are now available in Cowork, and your Signpath account is ready to use.

What is Claude Cowork?

Claude Cowork is Anthropic's agent for general knowledge work. It can use your computer, files, and connected applications to complete longer-running tasks across your work tools.

With Composio Connect, Cowork can securely access apps like Signpath through MCP without you sharing account credentials directly with the agent.

What is the Signpath MCP server, and what's possible with it?

The Signpath MCP server is an implementation of the Model Context Protocol that connects your AI agent and assistants like Claude, Cursor, etc directly to your Signpath account. It provides structured and secure access to your code signing workflows, so your agent can list certificates, retrieve project details, access signing policies, and check system metadata automatically on your behalf.

  • Certificate management and discovery: Quickly list all available code signing certificates within your organization, making it easy for your agent to select the right certificate for each workflow.
  • Automated project listing and tracking: Let your agent fetch and paginate through all Signpath projects, helping you organize, monitor, and automate signing across multiple software projects.
  • Signing policy insights and selection: Effortlessly retrieve detailed information about your organization’s signing policies, so your agent can ensure every artifact is signed according to security best practices.
  • System information and environment awareness: Instantly access Signpath system details, including product info, API version, and environment metadata, to keep your agent up to date with the latest platform capabilities.

Supported Tools & Triggers

Tools
List CertificatesTool to retrieve the list of certificates for an organization.
List ProjectsTool to list all projects for an organization.
Retrieve Signing Policy DetailsTool to retrieve details about signing policies for the current organization.
Retrieve System InfoTool to retrieve signpath system information including product, api version, environment details, and ui base url.

How to build Signpath MCP Agent with another framework

FAQ

What are the differences in Tool Router MCP and Signpath MCP?

With a standalone Signpath MCP server, the agents and LLMs can only access a fixed set of Signpath tools tied to that server. However, with the Composio Tool Router, agents can dynamically load tools from Signpath and many other apps based on the task at hand, all through a single MCP endpoint.

Can I use Tool Router MCP with Claude Cowork?

Yes, you can. Claude Cowork fully supports MCP integration. You get structured tool calling, message history handling, and model orchestration while Tool Router takes care of discovering and serving the right Signpath tools.

Can I manage the permissions and scopes for Signpath while using Tool Router?

Yes, absolutely. You can configure which Signpath scopes and actions are allowed when connecting your account to Composio. You can also bring your own OAuth credentials or API configuration so you keep full control over what the agent can do.

How safe is my data with Composio Tool Router?

All sensitive data such as tokens, keys, and configuration is fully encrypted at rest and in transit. Composio is SOC 2 Type 2 compliant and follows strict security practices so your Signpath data and credentials are handled as safely as possible.

Used by agents from

Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai
Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai
Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai

Never worry about agent reliability

We handle tool reliability, observability, and security so you never have to second-guess an agent action.