Connect Box once and the AI agent can search your Box folders, read files, and work with them in any chat, without you downloading and re-uploading. Compound talks to Box through Box’s own MCP server, using your Box login. The agent can only see what you can already see in Box.
If your company manages Box centrally, a Box admin needs to approve Compound before anyone can connect. See For Box admins below. If you try to connect and Box shows an error about the app not being authorized, send this article to your admin.
Connect your Box account
Open Connections in Settings
In Compound, open Settings > Personal > Connections. Box is listed with the other providers, marked Not connected.
Click Connect and sign in to Box
Click Connect next to Box. You are sent to Box to sign in and approve the access Compound asks for. Box shows two permissions: read and write files and folders, and use Box AI. Approve them to continue.
You are returned to the Connections tab, and Box now shows Connected.
Turn Box on in a chat
In the chat composer, open Connectors and switch on Box. The switch is remembered per chat, so a chat about one deal can keep Box on without re-enabling it each message.
What the agent can do with Box
With Box on in a chat, ask for Box content the way you would ask a colleague:
- “Find the latest board deck in the Project Falcon folder and summarize the key risks.”
- “Pull the revenue table from the Q2 management accounts in Box into a workbook.”
- “Which files in the Diligence folder mention customer concentration?”
The agent searches and reads Box files in place. Nothing is copied into Compound unless you ask the agent to create or import a file. Content the agent reads in a chat stays in that chat.
The connection is scoped to your user account, not to a Drive. Teammates in a shared Drive each connect their own Box account, and each of them only sees what their own Box login allows.
Disconnect Box
On the Connections tab, click Disconnect next to Box and confirm. Compound revokes its Box access token, and the agent can no longer query Box until you connect again. You can also revoke Compound from your Box account settings, which has the same effect.
For Box admins
Compound connects to Box as a Box platform app with user authentication. Each person signs in with their own Box account, so Compound never has more access than the user who connected it. To make Compound available to everyone in your Box enterprise, do the following once in the Box Admin Console.
Enable the Box MCP server
In the Box Admin Console, open Integrations, filter by the MCP category or search for Box MCP server, and enable it. Compound reads Box content through this server, and Box keeps it off until an admin enables it.
Approve the Compound app
Open Apps, then Platform Apps Manager, click Add Platform App, and enter Compound’s client ID:
lovn5ni9xqnth44vxe1xjf1t8fjxlw3nBox shows the permissions Compound requests before you approve: Read and write all files and folders and Manage AI. Compound requests no administrative permissions. Approve the app for all users, or limit it to a group for a pilot.
If your enterprise already allows unpublished platform apps by default, this step is not needed.
Once both are done, every user can connect from Settings > Personal > Connections as described above. Revoking the app in Platform Apps Manager ends access for everyone at once.
What to read next
- Connectors — how connecting works for every tool.
- Connectors and data sources — built-in public sources and Google Drive import.
- Chats and the AI agent — how the agent uses attached files and sources.