Skip to content
Custom Connectors

Use case: internal and in-house tools

Connect custom in-house software to Claude

Proprietary apps, internal databases, and on-prem line-of-business tools are in no connector directory and never will be. We build and maintain a custom MCP connector for your exact system, with scoped read-write access and firewall-friendly delivery.

Can Claude connect to custom in-house software that is not in any directory?

Custom in-house software that is in no directory can still connect to Claude through a custom MCP connector we build for your exact system. Proprietary apps, internal databases, and on-prem line-of-business tools have nothing off the shelf, so the connector is built specifically for your software with scoped read and write access.

What kinds of internal systems can it cover?

Internal systems we cover include bespoke applications built in-house, proprietary line-of-business tools, on-prem software with no cloud version, and internal databases with no public API. If your team relies on it day to day, we can build a connector for it, whether or not a vendor or directory ever supported it.

  • A proprietary app your team built in-house, with no vendor and no listing
  • An on-prem line-of-business tool that has no cloud or hosted version
  • An internal database (Postgres, SQL Server, MySQL) with no application API
  • A homegrown portal or admin panel that staff use through a browser

How does it reach a system behind our firewall?

A system behind your firewall can still reach Claude without opening it to the public internet. Depending on your setup we use IP allowlisting, a tunnel, or a small outbound-only component inside your network, scoped to only the endpoints Claude needs. We work with your IT so access stays tight, auditable, and inside your control.

01

IP allowlisting

Where your system is reachable but restricted, we run the connector from a stable, known origin your IT can allowlist, so only our service can reach the endpoints Claude uses.

02

A component inside your network

Where nothing is exposed to the public internet, a small outbound-only component sits inside your network and brokers requests, so you never open an inbound port.

03

Scoped database access

For internal databases, we connect through a least-privilege account or read replica limited to the specific tables and operations Claude needs, not the whole instance.

How is database and write access kept safe?

Database and write access stays safe because the connector uses credentials you provision and inherits only those permissions. For a database we scope to a least-privilege account or read replica limited to the tables Claude needs. Create and update flow freely, while delete and outbound actions are gated behind a confirmation you control.

The connector never grants Claude more access than the underlying account already has, and every action happens inside a Claude conversation a member of your team starts. Two common internal builds are a direct internal database connector and a connector for a homegrown app like an internal referral portal.

How long does it take and what does it cost?

Timeline and cost depend on how your internal system is reachable, whether it has an API, and how many actions Claude needs. After a short scoping call we give you a fixed quote and a build estimate. Pricing is a one-time build fee plus a monthly maintenance fee that keeps the connector working as your system changes.

We scope the turnaround and pricing with you on the call, based on your tools, the actions you need, and how your access is set up.

Frequently asked questions

Can Claude connect to custom in-house software that is not in any directory?
Yes. Claude can connect to custom in-house software that is in no directory through a custom MCP connector we build for your exact system. Proprietary apps, internal databases, and on-prem line-of-business tools have nothing off the shelf, so the connector is built specifically for your software with scoped read and write access.
Can the connector reach an on-prem or firewalled system?
Yes. For systems that are not reachable from the public internet, we reach yours through IP allowlisting, a tunnel, or a small outbound-only component inside your network, scoped to only the endpoints Claude needs. We work with your IT so access stays tight, auditable, and inside your control, with no broad inbound port opened.
Can Claude work directly against our internal database?
Yes. For an internal database with no application API, we connect through a least-privilege account or read replica limited to the specific tables and operations Claude needs. Reads and scoped writes flow inside a conversation you start, while destructive operations are gated behind a confirmation, so Claude never touches data outside its grant.
Does the connector give Claude more access than we already grant?
No. The connector authenticates with credentials you provision and inherits exactly those permissions. It never grants Claude more access to a system than the underlying account already has. Create and update actions flow freely, while delete and outbound actions like sending are gated behind a human-in-the-loop confirmation you control.
What if our internal tool has no API at all?
We still build a connector. Where there is no public API, we work against the database, an internal endpoint, or a thin interface we add alongside your app, scoped narrowly to what Claude needs. After a short scoping call we tell you which approach fits your system and what the build and maintenance look like.

Tell us about your internal tool. We'll build the connector.

Book a 30-minute scoping call. We'll map your in-house system, how it's reachable, and the actions Claude should take inside it.