You add the button.
Put Connect with ParrotIt in your product. Your customer follows it to ParrotIt.
For data companies
Give your customers a way to send their ParrotIt form answers straight to your software. They choose what to share. You receive answers sealed to your own key.
Connect with ParrotIt · Available on Enterprise
Create your account, then tell us about your company through our contact form. We’ll discuss Enterprise access and partner approval.
How it works
Put Connect with ParrotIt in your product. Your customer follows it to ParrotIt.
The account owner chooses specific forms or all forms, including new ones. They tap Allow once on a trusted device.
New answers are encrypted on the person’s device, before upload, and sealed to your public key. Your software opens them with your private key.
The customer stays in control
Riverside Swim Club wants its answers in Acme Data. The club’s account owner picks the forms and taps Allow.
If they choose All forms, forms they publish later join automatically. They can include earlier answers too.
Only the account owner can approve the connection, on a device ParrotIt already trusts.
Acme DataWebsite checked by ParrotIt · acme-data.com
Earlier answers too
What reaches your software
With All forms, the list grows when your customer publishes another form.
{
"subject.child.firstName": "Mia",
"personal.child.dateOfBirth": "2016-04-12",
"personal.applicant.fullName": "Sam Taylor",
"contact.applicant.email": "sam@example.com"
}No device, location or ParrotIt card details. No forms outside the customer’s choice. No customer master key, signing history or certifying history.
People are told
People see that their answers also go to your company. After you collect an answer, their record names you again.
Also sends answers to Acme Data.
A connection you control
ParrotIt holds only your public keys. It cannot open the answers sealed to your key.
A DNS record proves control of your domain. A person at ParrotIt approves your application before customers can connect.
Your server proves who it is with a short token signed by your own key.
Your customers stay connected when you change keys. If a key is stolen, ask us to pause collection while you replace it.
For developers
OAuth 2.0 is the approval flow behind familiar “Sign in with” buttons. PKCE ties the returned code to the request that started it.
Your server uses the API, the interface your software calls, to collect encrypted answers and confirm receipt. It also checks for deleted answer IDs.
The developer kit includes an opener library for JavaScript and Python, a small example server and an OpenAPI description of the interface. The developer guide and kit are not public yet.
Talk to us about your integrationprivate_key_jwt and EdDSA.S256.RSA-OAEP-256 and AES-GCM.600 requests a minute per connection. 600 token requests an hour per network.
Your button is an ordinary link. This example shows the structure; your registered details and generated values replace the examples.
https://parrotit.app/setter/authorize?response_type=code&client_id=pc_…&redirect_uri=https%3A%2F%2Fapp.acme-data.com%2Fparrotit%2Fcallback&state=…&code_challenge=…&code_challenge_method=S256POST /v1/oauth/token
GET /v1/connections
GET /v1/submissions
GET /v1/submissions/removed
POST /v1/submissions/ackThe one time code lasts ten minutes. An access token lasts an hour. A refresh token lasts 90 days and is replaced each time it is used. Reusing a refresh token ends the connection.
Become a partner
Use the button below. Opening an account does not enable Enterprise partner access.
After account setup, our ParrotIt contact form opens. Tell us what your product does and how you want to use the connection.
We’ll discuss the integration and Enterprise access with you. You accept our Partner Terms when you apply. Your website must be checked and your application approved before customers can connect.
Setup runs through the ParrotIt partner skill in Claude Code. It makes your keys on your computer and asks for your company name, logo, website, privacy policy, return addresses and a contact email.
You add a DNS record to prove control of your domain. ParrotIt reviews your application. Once approved, you can test the connection with a form and an answer.
Before you start
No. New answers are encrypted on the person’s device before upload and sealed to your public key. ParrotIt never holds your private key and cannot open those answers.
Your customer’s account owner chooses on a device ParrotIt already trusts. They can choose specific forms or all forms, including forms they publish later. They can also include earlier answers. Each form supports up to three connections, partners included.
Yes. Before sending, people see “Also sends answers to Acme Data.” with your company’s name in place of Acme Data. Once you collect an answer, their record says “Copied to Acme Data”.
The API supplies the IDs of answers deleted since you last checked. Your software uses those IDs to remove its copies. Disconnecting stops new answers at once, but does not remove answers you already hold.
Ask ParrotIt to pause your partner access. That stops every access token at once, while your customers stay connected. Make new keys. Collection can resume after ParrotIt approves them.
Your refresh token works again when the account reopens, within its 90 day lifetime.
Partner access is available on Enterprise. Create your account, then use our contact form to tell us about your company. Opening an account does not enable partner access or approve your application.
Yes. You accept our Partner Terms when you apply. Contact us to discuss Enterprise access. Any agreement covering the answers you hold for your customer, usually a data processing agreement, is between you and that customer. ParrotIt is not a party to it.
Partners · Enterprise
Create your account, then tell us about the connection you want to build.
Create an account