Six steps from install to first approved action.
- Step 1
Create or sign in to your Ancil workspace
Use your work email to create an Ancil workspace. If your team already has one, ask an owner or admin to invite you.
- Step 2
Connect HubSpot
From Ancil, go to Settings, Connected portals, then choose Connect HubSpot. You will be sent to HubSpot to approve the OAuth connection.
- Step 3
Approve read access
The standard connection starts read-only. It inspects supported CRM records and portal configuration. Workflows, forms, service tickets, marketing email, and content coverage require separate optional capabilities and may depend on your HubSpot plan.
- Step 4
Run the first operations audit
After HubSpot redirects you back to Ancil, your first operations audit is queued automatically. You can also run a fresh audit from the app navigation.
- Step 5
Review findings and drafted actions
Use Dashboard, Findings, Audit Reports, Ask AI, and Fix Queue to review evidence, trends, onboarding tasks, and drafted HubSpot actions. Ask AI explains stored audit results and synchronized portal context; it does not make live conversational HubSpot calls. Nothing changes in HubSpot unless an owner or admin approves it.
- Step 6
Grant write access only when needed
Review optional capabilities in Account Center before granting access. Some HubSpot capabilities bundle read and write permissions even when Ancil only collects evidence. Supported corrective actions still require their own explicit approval. You can decline access and review the issue manually.
What Ancil asks HubSpot for.
Ancil uses OAuth so you stay in control of what is granted. The initial connection is read-only. Optional coverage may require broader HubSpot permissions, which are explained before consent. Corrective actions require separate approval.
OAuth
Connect your HubSpot portal and keep the connection active.
CRM reads
Read contacts, companies, deals, owners, lists, tickets, and schemas for audit evidence.
Automation coverage
Sequence reads can be included in the standard connection. Workflow coverage requires a separate capability with broader HubSpot permissions.
Marketing and service coverage
Campaign, file, and conversation evidence depends on granted scopes and your plan. Forms, tickets, marketing email, and content have separate opt-ins. Knowledge-base quality requires customer-provided or manual evidence.
Approved actions
Ancil requests missing action permissions when needed. Granting a capability does not approve a corrective action.
What happens to your HubSpot data.
Ancil stores workspace settings, audit history, findings, approved action history, onboarding activity, and HubSpot portal metadata so your team can operate the portal over time.
HubSpot OAuth tokens are encrypted at the application layer before storage. Data is transmitted over HTTPS and access inside Ancil is limited by workspace role.
For retention, deletion, subprocessors, and controller/processor details, read our Privacy Policy, Terms of Service, and DPA.
Common setup questions.
I do not see my HubSpot portal after connecting.
Return to Settings and confirm the Connected portals section shows your Hub ID. If it does not, reconnect HubSpot or contact support@ancil.ai with your Hub ID.
HubSpot says a scope is unavailable.
Some optional scopes depend on your HubSpot subscription. Ancil will continue with the scopes your portal grants and will skip unsupported optional reads.
A fix asks for more access.
That is expected for actions that create lists, update records, or create tasks. You can grant the specific permission, cancel, or complete the action manually in HubSpot.
How do I disconnect Ancil?
In Ancil, go to Settings, Connected portals, then choose Disconnect. You can also remove the connected app from your HubSpot account settings.