Skip to main content
Connector guides

Connect Alloy Navigator

Alloy Navigator is IT service management and IT asset management in one product. It runs the service desk — incidents, service requests, problems, change requests and work orders — on top of a…

Written By Christopher Scaminaci

Last updated 6 days ago

Alloy Navigator is IT service management and IT asset management in one product. It runs the service desk — incidents, service requests, problems, change requests and work orders — on top of a configuration management database that tracks computers, hardware, networks, software licenses, contracts, purchase orders and stock. It is sold as software you install on your own server and as a cloud service Alloy hosts for you, and StackJack connects to either one the same way.

Connecting Alloy Navigator to StackJack gives your AI assistant a family of alloy_ MCP tools — MCP (Model Context Protocol) tools are the standardized commands an AI assistant can call through StackJack. With them, your AI can:

  • Work the service desk — list and search incidents, service requests, work orders, problems and change requests, plus the two combined ticket views, filtered on status, priority, assignee, customer or due date
  • Answer asset questions — computers, hardware, general configuration items, networks, documents and the combined configuration item view
  • Track software — installed software found by discovery, license records, the software catalog and the products those licenses cover
  • Follow purchasing and stock — purchase orders and their line items, vendors, vendor products, consumables, stock rooms, stock rules and equipment reservations
  • Read people and structure — persons, organizations, groups, locations, services and service level agreements
  • Use the knowledge base and admin records — articles, announcements, projects, tasks, contracts, library items, approval requests and approval stages, and the service catalog
  • Open one record in full — every field of a single record, its complete activity log, and the legal values of a status, priority or other classification field before you filter on one
  • See attachments — the files and links on a record, and the content of one attachment
  • Add to a record (on Pro plans) — attach a file, attach a link, or correct an attachment's description
  • Run your own workflow actions (on Pro plans) — create a record, run a step action on a record, or invoke a global workflow function

How StackJack authenticates to Alloy Navigator

Alloy Navigator issues an Application ID and a Secret on what it calls an application account. You create that account, copy the two values into StackJack, and StackJack exchanges them for an access token that lasts eight hours and renews itself. Nothing needs re-entering unless the Secret is regenerated.

Check one setting first

Alloy Navigator's API module can be set to accept access tokens or to use Windows authentication, and only the first works with StackJack. Open the Web Configuration tool on your Alloy Navigator web server, select the API module, and look at its User Authentication Type page. If it says Windows authentication, change it to access token authentication before you go any further — no credential you paste into StackJack will connect otherwise.

Steps

  1. Confirm access token authentication is on, as above.
  2. Copy the API URL from the same Web Configuration tool. It appears in the main pane when the API module is selected. Copy the whole address including its virtual directory, which is usually /api — for example https://navigator.example.com/api. The server name on its own is not enough.
  3. Create an application account in the desktop Settings App, under Services. Name it for StackJack so you can recognize it later. Every call StackJack makes runs as this account.
  4. Copy the Application ID and the Secret that Alloy Navigator issues for the account. Treat the Secret as a password.
  5. Paste all three into StackJack. Open Connectors, choose Alloy Navigator, and enter the API URL, the Application ID and the Secret.
  6. Run a Test Connection. StackJack confirms the credential by reading a single record from your Persons list. An empty Persons list still passes — the check proves the credential works, not that you have data.

What to know before your AI uses this connector

The credential has full access, and that is Alloy Navigator's design

An application account carries unrestricted access to every record and every workflow action, regardless of security roles. That is stated in Alloy Navigator's own documentation, and there is no read-only credential to hand StackJack instead. The practical consequence: control what StackJack can do with the tool permissions on this page, not with the credential. Turning off a permission group here is the boundary that actually holds.

The one exception is narrow and worth knowing. Three tools accept an optional person identifier that downgrades the call to self-service portal rights for that call only. It is useful when you want an action attributed to a requester rather than to the integration account.

There are no create or update commands — only your own workflow actions

This is the single most surprising thing about Alloy Navigator's API, and it shapes every write tool. The API does not create or update records directly. It runs workflow actions, which are defined in your own system and identified by a number.

That means StackJack cannot offer you a tool called "close incident". What that action does, what it is called, and what number it carries are all yours, not ours, and they differ between two customers running the same product. So the write half of this connector is three general-purpose tools that run an action you name by number:

  • Create a record by running a create action.
  • Run a step action on an existing record. This is the only update path in the whole API, and it is the same route whether the action closes a ticket, reassigns it, cancels it or emails somebody.
  • Invoke a global workflow function, which has no record scope at all.

You find the numbers in the desktop Settings App, under Workflow and Business Logic. StackJack cannot list them for you, because Alloy Navigator does not publish them over the API.

Three tools can change a great deal in one call

All three workflow tools are marked destructive and require the Pro tier. Whether your AI application asks you to confirm before running one depends on that application's own settings — see Destructive tools and confirmation. Review that setting, because the marking on its own is not caution for its own sake:

  • A create action commonly emails people. Raising a ticket through workflow typically notifies the requester and the assignee, because that is what your workflow is built to do.
  • A step action does whatever the action number says. Passing the wrong number does not fail safely; it runs a different action.
  • A global function has no scope. Alloy Navigator's own worked example of one closes every ticket resolved more than a set number of days ago, across the whole system.

There is one more consequence worth passing on to whoever reviews these prompts: a workflow action form can be submitted with a mandatory field left unfilled and still report success, if that field already had a default or a current value. So a write that came back clean did not necessarily do what was intended. Ask your AI to read the record back after a workflow write.

Attachments behave normally

Adding a file and adding a link only ever add to a record. Correcting an attachment's description replaces the text that was there, and an empty description clears it — a one-field cosmetic change that can never remove the attachment or its contents, so all three are marked the same way. Deleting an attachment is permanent and has no undo, so it is marked destructive too.

Two record types can only be listed

Software Catalog and Stock Rooms can be listed and searched, but Alloy Navigator refuses to open, log or act on an individual record of either. The affected tools say so in their descriptions, so an assistant that tries will be told why rather than looping.

Enterprise, not Express

These tools were built against Alloy Navigator Enterprise. Alloy Navigator Express has a smaller set of record types, so on an Express installation some tools will report that a record type is not recognized. That is the product difference, not a fault in the connection.

Plans and limits

Read tools are available on the Free tier. Everything that writes — the three workflow tools and the four attachment tools — is Pro. Business reaches the same tools as Pro and differs by monthly call quota.

See the generated Alloy Navigator tool reference for the current inventory, plan assignment, input schemas, and destructive-action labels.

Alloy Navigator publishes no request limits, and many installations run on a single server that is also serving your own technicians. StackJack therefore paces its calls conservatively and returns at most 200 records per page, so a large report is spread out rather than crowding out your service desk. Pacing is not a guarantee: retries are bounded, so a wide enough report can still time out. Narrow it, and check whether a write landed before repeating it — see Retrying a failed or timed-out write.

Reading a list result

List results arrive in a compact form worth knowing about if you are reading raw output: the response names its columns once and then returns rows as plain arrays of values in that same column order, rather than repeating every field name on every row. Your AI assistant is told how to read it. Lists also carry no total count and no next-page link, so a page shorter than the size you asked for is the end of the results.

Several customers

Every customer has their own Alloy Navigator server. Add one connection per customer from the connector's card, name it after the customer, and your AI names it on each call. Omit the name and the call runs against your default connection. Pin an endpoint to one connection when an AI should never reach past a single customer. See Several connections of one connector.

Troubleshooting

"Authorization has been denied for this request" — the access token was refused. StackJack gets a fresh one and retries on its own, so a failure that reaches you generally means the Application Secret was regenerated or the application account was disabled. Create or copy the credential again, paste it into StackJack, and run a Test Connection.

Test Connection fails immediately and nothing looks wrong with the credential — check the API URL. The most common mistake is entering the server name without the virtual directory. StackJack needs the whole address the Web Configuration tool shows you, /api included. The second most common is that the API module is still set to Windows authentication.

"Requested object is of unknown class" — that record type does not exist on your installation. It is the expected answer on Alloy Navigator Express, and on an Enterprise installation where a record type has been removed.

A list comes back with column names but no rows — the credential cannot see that record type, which is a different situation from the record type being empty. Check the API module configuration and the application account before concluding the customer has no records.

A workflow action was accepted but nothing seems to have changed — check the result detail rather than the top-level success flag, and read the record back. A form submitted with an unfilled mandatory field can still report success when the field carried a default or the record's current value.

A write is refused for Software Catalog or Stock Rooms — that is Alloy Navigator, not StackJack. Those two record types support listing only.

Alloy Navigator tools

alloy_ · 56 tools · Free 49 · Pro 7

Service Desk

ToolWhat it does
alloy_list_all_tickets
Free · Read-only
List and search the All Tickets aggregate — Incidents, Service Requests, Problems, Change Requests and Work Orders in one result set.
alloy_list_change_requests
Free · Read-only
List and search Change Requests — planned changes moving through the approval and implementation workflow.
alloy_list_incidents
Free · Read-only
List and search Incidents — the unplanned-interruption tickets that make up most service-desk volume.
alloy_list_my_tickets
Free · Read-only
List the My Tickets aggregate — the tickets belonging to the account whose credentials StackJack is using, which for a StackJack connector is the application account rather than a person.
alloy_list_problems
Free · Read-only
List and search Problems — the underlying causes that Incidents are grouped under.
alloy_list_service_requests
Free · Read-only
List and search Service Requests — the catalog-driven "please do this for me" tickets, as opposed to Incidents, which report something broken.
alloy_list_work_orders
Free · Read-only
List and search Work Orders — scheduled or dispatched pieces of work, typically raised off a Change Request or a Project rather than reported by a user.

People and Organizations

ToolWhat it does
alloy_list_groups
Free · Read-only
List and search Groups — the technician and user groups tickets are assigned and escalated to (underlying table User_Groups).
alloy_list_locations
Free · Read-only
List and search Locations — sites, buildings, floors and rooms.
alloy_list_organizations
Free · Read-only
List and search Organizations — the customer or business-unit tree (the underlying table is Organizational_Units, so this is a hierarchy, not a flat customer list).
alloy_list_persons
Free · Read-only
List and search Persons — every user, technician and contact in the system.
alloy_list_service_level_agreements
Free · Read-only
List and search Service Level Agreements — the response and resolution targets tickets are measured against (underlying table SLA).
alloy_list_services
Free · Read-only
List and search Services — the business or IT services tickets and SLAs are attached to (email, VPN, payroll).

Assets and Configuration

ToolWhat it does
alloy_list_all_cis
Free · Read-only
List and search the All CIs aggregate — every configuration item in one result set, spanning Computers, Hardware, Assets, Configurations and Networks.
alloy_list_assets
Free · Read-only
List and search Assets — tracked items of any kind, including the non-physical ones (licenses, warranties, subscriptions) that are not Computers.
alloy_list_computers
Free · Read-only
List and search Computers — the discovered and inventoried machines, with their operating system, hardware profile, owner and location.
alloy_list_configurations
Free · Read-only
List and search Configurations — configuration items in the CMDB that are neither Computers nor Hardware, such as services, applications and logical components, along with the relationships between them.
alloy_list_hardware
Free · Read-only
List and search Hardware — physical devices and components tracked separately from Computers, such as monitors, printers, docks and spare parts.
alloy_list_networks
Free · Read-only
List and search Networks — the network segments and subnets discovery scans and that assets are attached to.

Software Assets

ToolWhat it does
alloy_list_products
Free · Read-only
List and search Products — the internal product records assets, purchase orders and stock rules are built from (model, manufacturer, category).
alloy_list_software_catalog
Free · Read-only
List and search the Software Catalog — the normalized products Alloy recognizes, with manufacturer, platform and version.
alloy_list_software_licenses
Free · Read-only
List and search Software Licenses — entitlements owned, with seat counts, keys, purchase details and expiry.
alloy_list_tracked_software
Free · Read-only
List and search Tracked Software — the products Alloy is actively counting installations of, with install counts per product.
alloy_list_vendor_products
Free · Read-only
List and search Vendor Products — a supplier's catalog entries for a Product, carrying that vendor's part number and price.

Procurement and Stock

ToolWhat it does
alloy_list_consumables
Free · Read-only
List and search Consumables — stocked items that get used up, such as toner, cables and media, with quantities, cost and invoice references.
alloy_list_contracts
Free · Read-only
List and search Contracts — support agreements, warranties, leases and maintenance contracts, with start and end dates, cost and the vendor behind them.
alloy_list_library_items
Free · Read-only
List and search Library Items — the loan pool of equipment, media and documentation that can be reserved and checked out (underlying table Library).
alloy_list_purchase_order_items
Free · Read-only
List and search Purchase Order Items — the individual lines of a purchase order, with product, quantity, cost and PO status.
alloy_list_purchase_orders
Free · Read-only
List and search Purchase Orders — orders raised with suppliers, with status, vendor, totals and receipt state (underlying table PO).
alloy_list_reservations
Free · Read-only
List and search Reservations — bookings of loanable equipment and library items, with the person, the item and the reserved period.
alloy_list_stock_rooms
Free · Read-only
List and search Stock Rooms — the storage locations holding spare hardware and consumables.
alloy_list_stock_rules
Free · Read-only
List and search Stock Rules — the minimum and reorder levels defined per product and stock room.
alloy_list_vendors
Free · Read-only
List and search Vendors — suppliers and manufacturers, with contact details and account references.

Knowledge and Administration

ToolWhat it does
alloy_list_announcements
Free · Read-only
List and search Announcements — the notices published to the Self Service Portal, such as outage and maintenance bulletins.
alloy_list_approval_requests
Free · Read-only
List and search Approval Requests — the individual approvals raised against Change Requests, Service Requests and Purchase Orders, with the approver and the decision.
alloy_list_approval_stages
Free · Read-only
List and search Approval Stages — the ordered steps of an approval chain, showing which stage a record has reached and what each stage requires.
alloy_list_documents
Free · Read-only
List and search Documents — the document register: policies, procedures, diagrams and reference material held against organizations, assets or services.
alloy_list_knowledge_base_articles
Free · Read-only
List and search Knowledge Base Articles — documented fixes, workarounds and how-to guidance (underlying table KB_Articles).
alloy_list_projects
Free · Read-only
List and search Projects — multi-step pieces of work with owners, schedules and status.
alloy_list_service_catalog_items
Free · Read-only
List and search Service Catalog Items — the offerings users can request from the Self Service Portal (underlying table Service_Catalog_Items).
alloy_list_tasks
Free · Read-only
List and search Tasks — the individual steps under a Project or a ticket, with assignee, due date and completion state.

Objects and Metadata

ToolWhat it does
alloy_check_action_availability
Free · Read-only
Check whether a specific workflow Step Action can run on a specific record right now; responseObject.Result is true or false.
alloy_get_app_config
Free · Read-only
Retrieve the stored configuration of ONE external or mobile application registered in the Settings App under Services > Mobile Applications, including its Actions array of {ActionID, DisplayName, ResponseText}.
alloy_get_current_user_profile
Free · Read-only
Retrieve the Person record behind the credentials in use, as responseObject.Items of {name, caption, value}.
alloy_get_object
Free · Read-only
Retrieve EVERY field of one record, whatever its type.
alloy_list_classification_values
Free · Read-only
Retrieve the legal values of one classification or reference field on one record type — the Statuses an Incident can hold, the Priorities, the Types a Computer can be.
alloy_list_object_activities
Free · Read-only
Retrieve the Activities — the work log — of one record: every note, status change, SLA violation and workflow event, newest first if you sort descending on Num.

Attachments

ToolWhat it does
alloy_add_object_attachment
Pro · Write
Attach a file to one record.
alloy_add_object_link
Pro · Write
Attach a URL to one record as a link rather than a file.
alloy_delete_object_attachment
Pro · Destructive
DESTRUCTIVE: permanently remove one attachment from a record.
alloy_get_attachment_content
Free · Read-only
Retrieve one attachment's contents as base64, together with its file name, description and byte size: responseObject is {Data, FileName, Description, Size}.
alloy_list_object_attachments
Free · Read-only
List the attachments and links held against one record, with each attachment's ID, file name, type and creation date.
alloy_update_attachment_description
Pro · Write
Change the description shown beside one attachment.

Workflow Actions

ToolWhat it does
alloy_create_object
Pro · Destructive
Create a record by running a workflow Create Action.
alloy_invoke_global_function
Pro · Destructive
Run a global workflow function.
alloy_run_step_action
Pro · Destructive
Run a workflow Step Action on one record.