Estimated time: 5 minutes. You need access to Settings > Devin API in a Devin Teams organization so you can create a service user.
Prerequisites
- A Devin Teams organization
- Permission to create a service user under Settings > Devin API
- A Clarion workspace with the Devin integration page open
Step 1 — Create a service-user key in Devin
- Sign in to Devin for the Teams organization you want to connect.
- Open Settings > Devin API.
- Create a service user. Choose Member if agents only need skills and sessions. Agents need the service user to hold
ViewOrgSessionsto read sessions andManageOrgSessionsto start them. Choose Admin if they also need to list and read organization members. - Copy the key. It begins with
cog_.
Step 2 — Enter the key in Clarion
- In Clarion, open Integrations and find Devin under Development & Planning.
- Paste the service-user API key.
- Click Connect.
What agents can do
A Member role is enough for skills and sessions.
list_users and get_user need an Admin role.
Skill writes and session creation ask for approval by default. A workspace can turn that off the same way it does for other write tools.
Asking Devin to investigate
create_devin_session is for gathering information, not for authoring content. Clarion adds an instruction to every prompt telling Devin to report its findings as a message in the session and not to open pull requests, push commits, or change external systems. The prompt is limited to 4,000 characters, and prompts, titles, or tags that look like secrets are rejected.
By default, a person approves each session before it starts. If a workspace turns that approval off, the instruction Clarion adds to the prompt is the only limit on what the session is asked to do, and Devin acts with the access its organization grants. Sessions run asynchronously: the create call returns right away with the session id, URL, and status. The agent then checks get_devin_session until the session is finished or waiting for input, and reads the answer with get_devin_session_messages.
Clarion only knows skills it wrote. Devin has no skill list endpoint, so a skill created outside Clarion does not appear in that list. An agent can still read or update it if you already know the name.
Disconnect
To remove the integration:- In Clarion, open Integrations → Devin.
- Click Disconnect.
Troubleshooting
”Devin rejected the key”
The key is malformed, unknown, or revoked, or it is not acog_ service-user key. Create a fresh service-user key in Settings > Devin API and connect again. Personal access tokens and legacy apk_ keys are not accepted.