Global or AI Administrator
The person who adds the connector needs one of those Microsoft 365 admin roles.
Loading...

Add the Ad Legends brands server from the Microsoft 365 admin center. Create a Copilot client on this page, register it in Teams Developer Portal, then sign in to Ad Legends.
The person who adds the connector needs one of those Microsoft 365 admin roles.
The people who will use Ad Legends in Copilot need a Microsoft 365 Copilot license.
You will sign in to Ad Legends when you choose Authorize. Use the account Copilot should work from.
If this Microsoft 365 tenant was just created, wait about an hour before the first connection. Microsoft refuses it until then.
The admin center menu lists None, OAuth 2.0, and Entra SSO. Create the client here. The two Microsoft pages below are where it goes next. The client ID and secret are shown once.
Checking your account.
The connector article starts in the Teams Developer Portal. Open it, then follow the clicks.
https://dev.teams.microsoft.com
Ad Legendshttps://www.adlegends.aiAny Microsoft 365 organizationAny Teams appCreate the Copilot client on this page. Shown once.Create the Copilot client on this page. Shown once.https://www.adlegends.ai/api/oauth/authorizehttps://www.adlegends.ai/api/oauth/tokenhttps://www.adlegends.ai/api/oauth/tokenbrands:read brands:write ads:read ads:generate billing:readOnHTTP Basic authentication. Request body parameters also works.Set up custom federated connectors and Configure OAuth 2.0 authentication
Use the registration ID from step 01 as Reference ID. Authentication type is OAuth 2.0.
https://admin.cloud.microsoft/#/copilot/connectors/add
Ad LegendsConnect Microsoft 365 Copilot to your Ad Legends brands.https://www.adlegends.ai/api/mcp/brandsAd Legends Inc.https://www.adlegends.aihttps://www.adlegends.ai/privacyhttps://www.adlegends.ai/termsOAuth 2.0Set up custom federated connectors and Authentication for MCP plugins
Authorize sends you to Ad Legends. Sign in with the account Copilot should use, check the brands and access on the approval screen, and approve. You do not paste an Ad Legends password into Microsoft.
Reference ID is the OAuth client registration ID from Teams Developer Portal. It is not your email and it is not the Client ID in the download.
Copy each value as it is written. The endpoint includes the full path.
Ad LegendsConnect Microsoft 365 Copilot to your Ad Legends brands.https://www.adlegends.ai/api/mcp/brandsAd Legends Inc.https://www.adlegends.aihttps://www.adlegends.ai/privacyhttps://www.adlegends.ai/termsOAuth 2.0Authentication type is OAuth 2.0. Reference ID is the registration ID you copy after saving the client in Teams Developer Portal. Then choose Authorize, finish the Ad Legends sign-in, check Notice, and choose Create.
Microsoft says a new connector can take about 30 minutes before Copilot can use it. You can stage the rollout to selected people or groups instead of the whole organization.
“Show my Ad Legends brands.”
Open a new Copilot chat and ask that. A working connection lists the brands the Ad Legends account you approved can access.
This is normal on a brand-new Microsoft 365 tenant. Wait about an hour, then submit the same form again. Nothing is wrong with the Ad Legends server.
Paste the OAuth client registration ID from Teams Developer Portal. That ID is not your email and it is not the Client ID. An empty Reference ID makes Microsoft say the request is malformed.
You can use that row and skip the client on this page. Copilot registers itself, then you choose Authorize. If that row is missing, create a client here and choose OAuth 2.0.
Confirm the MCP endpoint is exactly https://www.adlegends.ai/api/mcp/brands, allow the sign-in window, and finish approval on the Ad Legends account you meant to use. If it still fails, contact Ad Legends and include the error text.
Wait about 30 minutes after Create. Start a new Copilot chat. If you staged the rollout, confirm your account is in the selected group.
A Global Administrator or an AI Administrator in the Microsoft 365 tenant. The people who will use Ad Legends in Copilot also need a Microsoft 365 Copilot license.
Yes. Sign in on this page and create a Copilot client. In Teams Developer Portal, enter the form top to bottom: Registration name, Base URL, Restrict usage by organization, Restrict usage by Teams app, Client ID, Client secret, Authorization endpoint, Token endpoint, Refresh endpoint, Scope, Enable Proof Key for Code Exchange (PKCE) on, and Client password authentication method set to HTTP Basic authentication. Request body parameters also works. Save, then paste the OAuth client registration ID into Reference ID. That ID is not your email and it is not the Client ID. If the menu offers OAuth 2.0 with Dynamic Client Registration, you can use that row and skip the download.
The account that finishes Authorize. Sign in with the Ad Legends account Copilot should work from, and approve the access on that screen. Staged rollout later controls which people in your tenant can use the connector.
A brand-new Microsoft 365 tenant can refuse the first connection for about an hour. Wait, then submit the same form again. The Ad Legends server is not the cause.
About 30 minutes after you choose Create. You can limit the rollout to selected people or groups. Then open a new Copilot chat and ask “Show my Ad Legends brands.”
Confirm the MCP endpoint is exactly https://www.adlegends.ai/api/mcp/brands, allow the sign-in window, and finish approval on the Ad Legends account you meant to use. If Microsoft still reports a redirect or consent error, contact Ad Legends and include the message on the form.
If a tenant setting blocks the connector, write to us with the error on the form. We will walk through it with you.