Workspace-scoped OAuth
Connection and refresh handling use encrypted connector secrets; normal management responses do not expose the tokens.
Pipedrive integration
Pipedrive is listed as a supported OAuth connector in the current Queast product. Access is enabled per workspace, while public plan availability and the exact object, field, direction, and mapping contract must be confirmed before implementation.
Current connector status
The current product catalog marks Pipedrive as supported. That does not make every workspace, plan, market, direction, object, field, or mapping automatically available.
Verified technical footing
The current implementation establishes a bounded connector foundation. The exact customer contract still depends on approved workspace configuration.
Connection and refresh handling use encrypted connector secrets; normal management responses do not expose the tokens.
Current delivery code recognizes company, person, and published Signal event families.
Mappings preserve the relationship between a Queast record and its Pipedrive partner record for later delivery.
Idempotent jobs and attempts record status, retry scheduling, connector throttling, and optional write-budget state without promising a public SLA.
Verified footing is not a blanket promise. Production scope still depends on the approved workspace configuration.
Outbound object contract
The current handlers establish these destination roles. Exact fields, creation or update behavior, included artifacts, permissions, and customer availability remain configuration-dependent.
A company event can find, create, or update a supported Pipedrive organization and retain its connector mapping.
A permitted person event can search by exact work email, create or update a supported record, and attach it to a mapped organization where available.
A published Signal delivery has technical paths for a follow-up activity and a context note linked to the mapped organization.
A proposed-message artifact can be transported as a note only when the approved export instruction includes it; it remains a draft for human review.
Movement contract
Do not summarize the connector as bidirectional sync. Outbound delivery and inbound interest have different events, identity rules, permissions, and launch states.
Current handlers recognize company, person, and published Signal events. Exact export profiles, destination fields, included artifacts, and availability remain configuration-dependent.
A proposed-message note is optional and must be explicitly included. Transport does not approve, schedule, or send the message.
A configured organization label or custom-field change can become a Queast bookmark when identity resolves. Public launch is not confirmed.
Administrators approve connection scope and mappings; sellers review the delivered context and decide the next CRM action.
Identity before delivery
The current connector records connection-specific identities for organizations, people, notes, and activities. Exact organization matching and review policy still require implementation approval.
Explore company intelligenceCurrent outbound behavior can search by organization name before creating a record; the final matching policy is configuration-dependent.
Current person handling requires permitted work email and uses exact-email search before creation or update.
The stored connector mapping associates the Queast subject with the Pipedrive partner record for scoped updates and attached context.
The configured interest path can quarantine an event when the Pipedrive organization is not mapped instead of silently attaching it.
Implementation checklist
These are required implementation decisions, not claims that every Pipedrive connection exposes the same behavior.
Read Tech and SecurityWhich plan, workspace, and market can use the connector?
Which outbound and inbound paths are enabled?
What may be created, updated, associated, appended, or provisioned?
Which matching policy, permissions, allowlists, and review behavior apply?
Which Pipedrive app scopes and Queast roles are required?
What delivery status, retry behavior, throttling, write budgets, limits, support, and audit detail apply?
Next step
Confirm availability, direction, objects, fields, identity handling, contact-data policy, permissions, and operational scope before implementation.