How setup works
A deployment operator connects Buildkite once from Settings > Integrations using OAuth. The built-in integration uses Buildkite’s hosted/mcp/readonly endpoint and requests its read scope. Buildkite’s public OAuth
metadata supports dynamic client registration and PKCE, so self-hosted Roomote
deployments do not need a preconfigured Buildkite OAuth client.
The organization picker shown during authorization is a convenience, not an
access-control boundary. The connection can see organizations available to the
authorizing account, subject to Buildkite’s permissions.