Connections & sidecars
Every third party in one grid, every credential encrypted before it reaches the database, and the optional containers that keep search, meetings and speech on your own box.
One connections grid
All connections live on one page. There is no per-provider section in the sidebar, because a page per provider is a sidebar tax on a distinction that only exists to justify itself — every card opens the same dialog.
What connects
None of them are required. The appliance runs with every one of them disconnected — each connection is what turns a section from a register into something that acts.
How credentials are stored
Every secret you paste here — OAuth tokens, API keys, SMTP passwords, the GitHub App private key — is encrypted with TALON_CONTROL_ENCRYPTION_KEY before it touches the database.
Health, and what breaks
Connections are health-checked, and the result surfaces both here and on the compliance dashboard — because a dead integration is usually silent. An expired OAuth token does not raise an error anybody sees; it just means the mail stopped syncing on Tuesday and nobody noticed until Friday.
Optional sidecars
Three things run as containers beside the app rather than as code inside it. Your host pulls each from its upstream publisher, which is deliberate — it keeps their licences off Control's own source, and keeps the data on your box either way.