Integration

Connect HubSpot to Polaris

Private-app tokens are scoped where you create them, which makes HubSpot one of the easier connections to grant narrowly.

What connecting buys

Connecting HubSpot gives a Polaris worker your CRM contacts and deals through a private-app access token. Polaris calls HubSpot to verify the token before storing it and identifies the portal it belongs to. Private apps are scoped in HubSpot's own settings, so a worker doing research reads without ever holding permission to change a deal stage.

Credential
Private-app access token
Verified live
Polaris identifies the portal
Scoping
Per private app, in HubSpot

CRM hygiene is the job nobody does

Every sales team has the same unpaid tax. Contacts with no company, deals sitting in a stage they left three weeks ago, notes that exist as a memory rather than a record, and a pipeline review that starts with twenty minutes of arguing about whether the data is real.

It is exactly the shape of work an AI worker handles well: high volume, rule-driven, boring enough that a person postpones it, specific enough that acceptance criteria can say what good looks like.

What the connection gives a worker

Everything below is bounded by the scopes on the private app you created.

  • Contacts

    The list a researcher enriches, a coordinator deduplicates, or an SDR reads before writing anything to anybody.

  • Deals

    Pipeline state as it actually is, which is the only useful starting point for a weekly review or a stale-deal sweep.

  • A real basis for outreach

    An SDR worker that reads the CRM writes a first line about the account instead of a first line about the industry.

  • Reporting inputs

    Pipeline summaries and stage-movement write-ups become a delivered doc rather than a spreadsheet somebody rebuilds every Monday.

Scoping the private app

HubSpot is where the boundary is set. These are the decisions that matter before you paste anything.

QuestionConservative answer
Which objects?Only the ones the worker is briefed on, usually contacts and deals
Read or write?Read-only unless a worker is explicitly meant to update records
Which portal?The production portal only if the work needs it; a sandbox for anything experimental
Who creates it?An admin who understands the scope screen, not whoever is closest

Workers and work this connection feeds

Questions people ask

+What HubSpot credential does Polaris use?

A private-app access token, the kind beginning pat-, created under Settings and Integrations in HubSpot. Polaris verifies it against HubSpot's account details endpoint and identifies the portal before storing anything.

+Can a worker change a deal or delete a contact?

Only if the private app you created has those scopes. HubSpot enforces the boundary, and Polaris uses the token as issued. A read-only private app produces a worker that can analyse the pipeline and cannot alter it.

+Is connecting a CRM safe from a privacy standpoint?

That is a judgement about your own obligations rather than a claim we can make for you. Polaris verifies the token, stores it server-side, and gives workers exactly the scopes you granted. There is no certification or compliance programme behind it to lean on, and pretending otherwise would be the real risk.

+Can I connect HubSpot without giving access to the whole portal?

Scope the private app to specific objects, which is the mechanism HubSpot provides. Polaris has no additional filter of its own, so the private-app configuration is the boundary that counts.

Your next hire takes 60 seconds.

The software is free — unlimited people, tasks, workstreams and docs. You pay only for work an AI worker actually delivers, itemised by the hour.

Get started free

Last checked .