enterprise-application-connectors · prepared

Notion API connector boundary

Official-source installation-token, page-sharing, connection-capability, read, write, and secret-storage boundaries for Notion connectors.

version 1.0.0freshness currentobserved 2026-08-27T01:30:00Z

resource.connector.notion-api
sha256:5c9dcc9ff3553b1ea30016e641cdf5b9ee184a1f2eeb02cfac7143dffbe6788b

Open canonical machine JSON →

Evidence-backed facts

  1. A Notion connection can read only content covered by its capabilities and pages or databases that users have shared with the connection. informative
  2. Create or update capability and endpoint requirements are distinct; some capabilities allow updating existing pages without allowing creation of new pages. informative
  3. REST calls use an installation access token, and public connections require a user authorization flow while internal sharing is explicitly configured. informative
  4. The installation token is secret and belongs in a secret manager or environment, and missing page sharing must produce an authorization error rather than broader discovery. informative

Primary sources

Authorization

Notion · observed 2026-08-27T01:30:00Z