# Paireeo authentication and public access

## Public sources

The published pages, /api/public/pages, /ask and /mcp are keyless and read-only. No client registration, access token, card, or sign-in is required. Use the public API documented at https://paireeo.info/docs. Do not send credentials or personal information to these endpoints.

## Private services

Paireeo's staff admin, client workspaces, contracts, and connected SEO accounts require their own authorized sign-in. This public MCP never grants or proxies access to them. For staff access use https://paireeo.info/admin/login; for client access use https://paireeo.info/client. Account access and integration permissions must be approved by the account owner. Email info@paireeo.com for access questions.

## Errors

A public page lookup outside the documented allowlist returns 404, including a private URL. An invalid query returns 400. Private routes can redirect to sign-in or return an authorization error. Do not try another path to bypass those controls.

## Revocation

Private integration access can be disconnected in the respective service or revoked in the provider account. There are no public MCP credentials to revoke.
