> ## Documentation Index
> Fetch the complete documentation index at: https://dev-docs.persona.hasanraiyan.me/llms.txt
> Use this file to discover all available pages before exploring further.

# Start the owner OAuth flow (owner only)

> No separate Developer callback route exists — the OAuth redirect URI is a single, pre-registered URL that completes via the existing Persona callback route regardless of who initiated the flow, since the signed state alone carries the initiating context.




## OpenAPI

````yaml /openapi.json get /api/v1/developer/mcps/{mcpId}/oauth/owner/authorize
openapi: 3.0.0
info:
  title: Persona.ai Developer Platform API
  version: 1.0.0
  description: >-
    REST + AG-UI API for integrating your product with Persona's agent
    infrastructure.


    Every endpoint here is a server-to-server call — see the Integration Guide
    for where in your own stack to call each one from, and how the same endpoint
    serves both Project-level and per-end-user requests via the
    `x-persona-external-user-id` header.
servers:
  - url: https://api.personaai.com
    description: Production
security: []
tags: []
paths:
  /api/v1/developer/mcps/{mcpId}/oauth/owner/authorize:
    get:
      tags:
        - Developer
      summary: Start the owner OAuth flow (owner only)
      description: >
        No separate Developer callback route exists — the OAuth redirect URI is
        a single, pre-registered URL that completes via the existing Persona
        callback route regardless of who initiated the flow, since the signed
        state alone carries the initiating context.
      parameters:
        - name: mcpId
          in: path
          required: true
          schema:
            type: string
      responses:
        '200':
          description: Authorization URL
        '404':
          description: MCP server not found or unauthorized
      security:
        - projectCredential: []
components:
  securitySchemes:
    projectCredential:
      type: http
      scheme: bearer
      bearerFormat: <keyId>.<secret>
      description: >-
        Developer Platform Project credential, minted via POST
        /api/v1/projects/{projectId}/credentials. Send as `Authorization: Bearer
        <keyId>.<secret>`. Optionally pair with the `x-persona-external-user-id`
        header to act on behalf of one of the Project's own external users. This
        credential is a server-side secret — see the Integration Guide.

````