Docs / Connect ERPNext · Community Alpha
Connect ERPNext
Setup asks for three things. Have the TaktSignal Reader ready first.
| Field | What to enter |
|---|---|
| ERPNext address | The address you open ERPNext with, e.g. https://erp.your-company.com. Use https://. Plain http:// is accepted only for this computer or a private network address (for example a test server on your LAN). |
| API key | From the Reader user → Settings → API Access |
| API secret | Shown once by Generate Keys |
Click Test connection. TaktSignal then:
- checks that the address is safe to use (no redirects, no cloud-metadata or link-local addresses, a certificate this computer trusts — TaktSignal never ignores certificate errors);
- signs in with the key and secret and refuses the Administrator account;
- reads the ERPNext and Frappe versions (untested versions show a warning);
- lists the companies the Reader can see — pick yours (chosen automatically if there is only one);
- runs the read-only verification and shows Read-only access confirmed — or stops and explains which permission to remove (details);
- shows What TaktSignal can see: each capability as Ready, Limited or Unavailable, with the reason.
Limited or unavailable capabilities do not stop you. TaktSignal keeps working and tells you, on every affected alert, what it could not check. Required document types that are not readable do stop setup.
Where the credentials go
The API key and secret are saved in your computer's password store (macOS Keychain, Windows DPAPI, Linux Secret Service). The ERPNext address and company are saved in TaktSignal's settings file. Credentials never appear in the app's pages, logs, backups or diagnostics files. If no secure password store is available (for example a Linux machine without a desktop keyring), setup stops and explains why instead of saving the secret in a file.
Changing the connection later
Control Center → Connection shows the address, company, versions and when the read-only check last passed. Use it to enter new keys (after regenerating them in ERPNext) or to re-run the checks.
Common messages
| Message | What to do |
|---|---|
| This ERPNext address cannot be used. | Use the https:// address you open ERPNext with. |
| TaktSignal cannot securely verify this ERPNext server. | The certificate is self-signed, expired or from a company certificate authority this computer does not trust. Ask IT to install the company certificate on this computer. |
| TaktSignal cannot find this ERPNext server / refused / did not answer in time | Check the address, that this computer can open ERPNext in a browser, and VPN or proxy settings. |
| ERPNext rejected the API credentials. | Copy the key and secret again (Generate Keys shows the secret only once). |
| These are Administrator credentials. | Create a dedicated Reader. |
| This ERPNext account has write permissions. | See If write permission is detected. |
| The TaktSignal Reader cannot read everything TaktSignal needs. | Give the role Read permission for the listed required document type. |
| The TaktSignal Reader cannot see any company. | Give read permission for Company or Warehouse. |
More in Troubleshooting.