Scale Intelligence■ Docs
Docs / Registers / tool si.session.sign_in

tool si.session.sign_in.

Nothing, or the tenant to sign in to: the way the browser was opened, then the caller as a view once the code came back; the refresh token goes to the keychain and never to the caller.

Figure 1si.session.sign_inspecified
AGENT'S HOSTClaude Code orany MCP clientMCP SERVERsi.session.sign_intasks, appsCORE: SESSIONinput SignInInputCARDbody CallerThe host draws the card from ui://scale-intelligence/cards/Caller.flows forwardthe result
Over MCP, si.session.sign_in takes SignInInput and returns a card whose body is Caller.

the way the browser was opened, then the caller as a view once the code came back; the refresh token goes to the keychain and never to the caller. The call needs the read grant at the user rung.

result
a card whose body is Caller
read-only
yes
destructive
no
card address
ui://scale-intelligence/cards/Caller
fieldtyperequirednote
tenantidno
tokentextnoan access token the identity provider issued, checked six ways at the face; never logged

Claims#

claimstateroute or tool
The MCP server declares si.session.sign_in at contract 0476e35e6e275db5.targetsi.session.sign_in