Integration guide
Connect Zoom to Velanir
The Velanir Zoom app lets an authorized user connect a Zoom account, manage user-requested meetings, and retrieve available cloud-recording metadata, AI Companion summaries, and retained meeting transcripts through protected Velanir workflows.
Setup
Add and use the app
Step 1
Start in Velanir
Sign in to the Velanir Platform, open the intended coworker, select Connections, choose Zoom — Velanir OAuth, and select Connect.
Step 2
Authorize Zoom
Sign in to Zoom if prompted, review the requested permissions, and authorize the app. Zoom returns to the Velanir-owned callback URL.
Step 3
Use or remove it
The connected Zoom identity appears on the coworker Connections page. From there, validate the connection, disconnect it, or reconnect another Zoom account.
Permission and data use
Velanir requests only the granular Zoom permissions listed in the reviewer plan below. Zoom API responses are displayed on demand by the validation workflow and are not persisted there. Raw recording video and audio are not downloaded or stored. OAuth access and refresh tokens are stored only as encrypted secrets in Supabase Vault and are never returned to the browser or exposed to a digital coworker.
See the Velanir Privacy Policy for retention, deletion, and data-subject-rights information.
Zoom Marketplace review
End-to-end reviewer test plan
Platform credentials are supplied privately in the Zoom App Submission form. Sign in at https://platform.velanir.ai, open the designated production test organization and coworker, and select Connections. Pop-ups must be enabled. Zoom reviewers can authorize with their own Zoom review account; no Zoom password is included in this document.
For the recording, summary, and transcript steps, use a Zoom account with cloud recording and the corresponding AI Companion features enabled. The account must contain at least one completed meeting whose recording, summary, and retained transcript are available. The private submission notes identify the seeded occurrence UUID used for the review run. If 2FA is enabled on a supplied Platform identity, the private notes provide the review coordination method. Run the seeded recording, summary, and transcript tests before disconnecting the designated connection.
- 1. On the existing Zoom — Velanir OAuth connection, open its menu and choose Validate Zoom permissions.
- 2. Run the eight tests below in order. The page reports the result of every scope.
- 3. Return to Connections and disconnect Zoom after all seeded asset tests pass.
- 4. Choose Zoom — Velanir OAuth, select Connect, review the scopes, and authorize with the Zoom review account.
- 5. Confirm the popup returns to Velanir, the connected Zoom email appears, and the profile, list, and meeting-write lifecycle can be run again.
| Reviewer action | Zoom scope | Expected result |
|---|---|---|
| Read connected Zoom profile | user:read:user | Shows the authorized Zoom user ID, account ID, email address, and display name. |
| List scheduled meetings | meeting:read:list_meetings | Lists up to 30 scheduled meetings for the authorized user. |
| Create reviewer meeting | meeting:write:meeting | Creates one 15-minute meeting with the [Velanir Zoom Review] marker. |
| Update reviewer meeting | meeting:update:meeting | Renames only the marked meeting created by this validation workflow. |
| Delete reviewer meeting | meeting:delete:meeting | Deletes only the marked meeting created by this validation workflow. |
| List cloud recordings | cloud_recording:read:list_user_recordings | Lists recent cloud-recording metadata and available meeting assets. |
| Read Zoom AI Companion summary | meeting:read:summary | Returns the summary and next steps for the selected completed-meeting occurrence. |
| Read retained meeting transcript | cloud_recording:read:meeting_transcript | Returns transcript text for the selected completed-meeting occurrence. |
For completed meetings, enter the occurrence UUID shown by Zoom for both the summary and retained-transcript tests. A reusable numeric meeting ID can return an invalid-meeting response. A cloud recording's audio-transcript file is not the same asset as Zoom's retained meeting transcript.
After the eight tests, return to Connections, disconnect Zoom, confirm the connection disappears, and connect it again to verify the complete disconnect and reconnect lifecycle. The temporary reviewer meeting is deleted during the ordered test run. The seeded Zoom connection is review-only and can be restored by the Velanir contact if a later review pass needs the same assets.
All requested scopes are required; this submission declares no optional Zoom scopes. The Platform has one reviewer role for this flow, so a second application role is not applicable. Every authorization is bound to its organization, coworker, Zoom user, and Zoom account; another organization or coworker cannot use the connection.
Remove the app
Disconnect Zoom from the Connections area in Velanir, or remove Velanir from the Added Apps section of the Zoom App Marketplace. Velanir revokes the active authorization and deletes the Vault secret, authorization, and connection metadata when the disconnect or verified Zoom deauthorization request is processed.