# Extensions

**You'll need:** permission to enable extensions. **Administration → Extensions.**

An extension is a feature built for your workspace that runs outside the platform and shows
up inside it: a page in the menu, a panel on your records, a tool your agents can use. It is
offered to your workspace first and does nothing until you enable it.

## Enable one

Pick it under **Offered to this workspace**. The screen lists:

- **It asks to.** The permissions it wants, in the same words as the role editor. You can
  grant any of them you hold yourself, and leave out the rest.
- **It listens to.** The changes it hears about, such as a record moving to a new state.
- **It talks to.** The outside systems it sends data to.
- **It adds.** The pages, panels and agent tools it puts into the app.

Choose what to grant and select **Enable in this workspace**. Your name, the date and the
version are kept with your consent.

The screen then shows an install key and a signing secret, once. They belong in the
extension's own secret store; give them to whoever runs it and close the panel.

## While it runs

- **Recent events** shows what was sent to it and whether it answered. A failed one can be
  sent again.
- **New key** and **New signing secret** replace a credential that may have leaked. The old
  key stops working at once.
- A new version that asks for more than you granted keeps working with what you granted.
  Disable and enable it again to review the new access.

## Turn it off

**Disable** stops it at once: its key is refused, its pages and tools disappear, and no more
events are sent. Enabling it again issues new credentials.

**Remove** also deletes everything it kept in the workspace.
