This guide connects Salesforce Agentforce to your TaskRay data. Agentforce has a native MCP client, so a Salesforce admin or maker registers TaskRay MCP as an external MCP server, adds its tools to an agent, and each user signs in with their own Salesforce login the first time they use it. Every connection stays scoped to that user's own permissions.
Admin or maker: connect TaskRay MCP to Agentforce
- Get your org's connector URL. Open the TaskRay connection page and sign in once with Salesforce. Use
https://mcp.taskray.com/oauth/loginfor a production org, orhttps://mcp.taskray.com/oauth/login?sandbox=truefor a sandbox or scratch org. Copy the connector URL shown on the connected page. - In Salesforce Setup, register TaskRay MCP as an external MCP server in Agentforce, using that connector URL as the endpoint and OAuth as the authentication method so each user signs in as themselves.
- Use the tool allowlist to choose which TaskRay tools the agent can use.
- Add the TaskRay tools to your agent in Agent Builder, then activate the agent.
End users: sign in on first use
Once the agent is active, each user signs in with their own Salesforce credentials the first time they use a TaskRay action. There is nothing for an end user to paste. They only complete the Salesforce sign-in prompt, and the agent then works with TaskRay data on their behalf.
Frequently Asked Questions
Q. How is this different from TaskRay AI?
TaskRay AI is a prebuilt Agentforce agent that TaskRay ships as its own managed package, with its own setup, and it does not use MCP. This guide instead connects your own Agentforce agent to TaskRay MCP through the connector URL. You can use either or both.
Q. A user gets "access denied" the first time they use the agent.
They aren't provisioned in Salesforce yet. Assign both permission sets (TaskRay Agents App Access and TaskRay Agents - User) and confirm App Access is selected on the External Client App.
Q. Sign-in works, but TaskRay actions fail.
The user is missing the TaskRay Agents - User permission set, which grants the API Enabled entitlement every tool call needs.
Q. Should I use the production or sandbox connector URL?
Match your target org. Use ?sandbox=true for sandbox and scratch orgs so sign-in goes to test.salesforce.com.
Still stuck? Contact TaskRay Support with the exact error text and which org (production or sandbox) you're connecting.