How to connect Signpath to Claude Cowork

Cowork is Anthropic's AI agent for knowledge work. Think of it as Claude Code for everything else. It works autonomously with your computer, local files, and applications to accomplish complex tasks. This guide walks you through the easiest and most secure way to connect your Signpath account to Cowork via Composio Connect, enabling it to list all available code signing certificates, show all projects for your organization, get details of current signing policies, and more such actions on your behalf without compromising your account security.

Signpath logoSignpath
Api Key

Signpath is a code signing service that automates the secure signing of your software artifacts. It ensures authenticity and integrity for every release, right from your CI/CD pipeline.

5 Tools

Introduction

Cowork is Anthropic's AI agent for knowledge work. Think of it as Claude Code for everything else. It works autonomously with your computer, local files, and applications to accomplish complex tasks.

This guide walks you through the easiest and most secure way to connect your Signpath account to Cowork via Composio Connect, enabling it to list all available code signing certificates, show all projects for your organization, get details of current signing policies, and more such actions on your behalf without compromising your account security.

Also integrate Signpath with

Connecting Signpath to Claude Cowork

1. Open Customize

In Claude Desktop, click Customize in the left sidebar, then select Connectors and click the + icon at the top.

Claude Desktop connectors screen with Add custom connector selected

2. Add the Composio MCP server

Click Add custom connector and paste in the Composio MCP server URL:

bash
https://connect.composio.dev/mcp
Add custom connector dialog with Composio MCP server URL

3. Authorize in your browser

Click Connect. You'll be redirected to a browser window where you can authorize Composio to continue.

Composio authorization screen for Claude Cowork

4. Connect your Signpath account

Back in Cowork, ask the agent to connect to Signpath or give it any Signpath-related task.

For example, ask Cowork to:

  • "List all available code signing certificates"
  • "Show all projects for your organization"
  • "Get details of current signing policies"

It will prompt you to authenticate and authorize access.

That's it. Composio's tools are now available in Cowork, and your Signpath account is ready to use.

What is Claude Cowork?

Claude Cowork is Anthropic's agent for general knowledge work. It can use your computer, files, and connected applications to complete longer-running tasks across your work tools.

With Composio Connect, Cowork can securely access apps like Signpath through MCP without you sharing account credentials directly with the agent.

What is the Signpath MCP server, and what's possible with it?

The Signpath MCP server is an implementation of the Model Context Protocol that connects your AI agent and assistants like Claude, Cursor, etc directly to your Signpath account. It provides structured and secure access to your code signing workflows, so your agent can list certificates, retrieve project details, access signing policies, and check system metadata automatically on your behalf.

  • Certificate management and discovery: Quickly list all available code signing certificates within your organization, making it easy for your agent to select the right certificate for each workflow.
  • Automated project listing and tracking: Let your agent fetch and paginate through all Signpath projects, helping you organize, monitor, and automate signing across multiple software projects.
  • Signing policy insights and selection: Effortlessly retrieve detailed information about your organization’s signing policies, so your agent can ensure every artifact is signed according to security best practices.
  • System information and environment awareness: Instantly access Signpath system details, including product info, API version, and environment metadata, to keep your agent up to date with the latest platform capabilities.
TOOLS

Supported Tools

Every Signpath action and event your agent gets out of the box.

Get Health Check

Tool to check if the SignPath API is healthy and operational.

List Certificates

Retrieve all certificates available in a SignPath organization.

List Projects

Tool to list all projects for an organization.

Retrieve Signing Policy Details

Retrieve signing policy details for code signing operations.

Retrieve System Info

Retrieves SignPath system information including the application version and the web UI base URL.

FAQ

Frequently asked questions

With a standalone Signpath MCP server, the agents and LLMs can only access a fixed set of Signpath tools tied to that server. However, with the Composio Tool Router, agents can dynamically load tools from Signpath and many other apps based on the task at hand, all through a single MCP endpoint.

Yes, you can. Claude Cowork fully supports MCP integration. You get structured tool calling, message history handling, and model orchestration while Tool Router takes care of discovering and serving the right Signpath tools.

Yes, absolutely. You can configure which Signpath scopes and actions are allowed when connecting your account to Composio. You can also bring your own OAuth credentials or API configuration so you keep full control over what the agent can do.

All sensitive data such as tokens, keys, and configuration is fully encrypted at rest and in transit. Composio is SOC 2 Type 2 compliant and follows strict security practices so your Signpath data and credentials are handled as safely as possible.

Start with Signpath.It takes 30 seconds.

Managed auth, hosted MCP servers, and every Signpath tool your agent needs.Free to start.

Start building