Claude connector
The ix connector lets Claude boot machines, run commands on them, and read and write their files. It is a remote MCP server at https://ix.dev/mcp. You sign in with your ix account, and Claude acts as that account.
Add it in Claude
- Open Settings, then Connectors.
- Select Add custom connector.
- Enter
https://ix.dev/mcpas the URL and save. - Select Connect. Sign in to ix and approve the consent page.
When ix is listed in the Claude connectors directory, find ix there and select Connect. The sign-in is the same.
Sign in and consent
Claude registers itself with ix, then opens the ix sign-in page. After you sign in, ix shows a consent page that names the client and the host it will send you back to. Select Approve to continue. Select Deny to stop.
An approved connector receives an access token that lasts one hour and a refresh token that lasts 30 days. Claude refreshes the access token without asking you again. The access token is an ordinary ix API token with the same access as your own tokens.
Tools
Every tool carries a title and a read-only or destructive mark. Claude uses the marks to decide when to ask you first.
| Tool | Title | Mark | What it does |
|---|---|---|---|
machine_list | List machines | read-only | List the machines in the account. |
machine_read_file | Read file | read-only | Read a UTF-8 text file from a machine. |
machine_read_image | View image | read-only | Show a PNG, JPEG, GIF or WebP file from a machine. |
machine_create | Create machine | write | Boot a machine from an OCI image. It runs until it is deleted. |
machine_exec | Run command | destructive | Run a shell command on a machine. Each call is a fresh process and waits up to 120 seconds (set timeout_seconds, at most 230). |
machine_write_file | Write file | destructive | Write a text file on a machine, replacing it if it exists. |
machine_delete | Delete machine | destructive | Permanently delete a machine and its disk. |
What the connector stores
The connector server keeps no data. It forwards your access token to ix on each call. Commands, file contents and command output travel between Claude and your machine, and the connector does not store them. Claude handles tool results under its own policy. The privacy policy lists what ix stores for the sign-in.
Revoke access
- Open your profile in the ix dashboard.
- Find the entry named
connector: <client name>under api tokens. - Select Revoke.
The connector stops working on its next call. Removing the connector in Claude does not always revoke the token, so revoke it in ix to end the access.
Troubleshooting
The consent page does not appear
Sign in to ix.dev in the same browser, then start Connect again. The consent page needs your ix session.
Claude says the connector needs to reconnect
The token was revoked, or the 30-day refresh token expired. Select Connect again and approve.
A tool returns an unauthorized error
Your account cannot reach that machine, or the token no longer works. Check the machine name with machine_list, then reconnect if the error stays.
A command fails with a Timeout error
The command ran longer than its timeout, and it may still be running on the machine. Start long work in the background, for example nohup cmd > /tmp/out.log 2>&1 &, and read the log with a short call. Claude stops any tool call after 240 seconds.
The redirect host looks wrong
Deny the request. A request from Claude returns to claude.ai. A request from a local tool such as Claude Code returns to localhost.
Support and privacy
Email andrew@ix.dev for support, privacy requests and security reports. A person reads it. The policies are at ix.dev/privacy and ix.dev/terms.