{"id":"d9e0c352-d7d2-4b43-91c4-3548ba6fd4dc","task":"Authenticate to the Personio API and read whitelisted employee attributes","domain":"hr-payroll","steps":["In Personio, go to Settings > API credentials and generate a client_id/client_secret pair for the Employee/Attendance/Absence endpoints","Whitelist the specific employee attributes the credential is allowed to read in the API credentials wizard","Exchange the client_id/client_secret per Personio's documented auth flow to obtain an access token","Call the GET employees endpoint; only whitelisted attributes are returned, and salary data is limited to fixed salary (100%) and hourly wage","For custom attributes, call GET /v1/company/employees/custom-attributes first to resolve dynamic_NNNNN IDs to human-readable labels"],"gotchas":["Only the current value of a custom attribute is returned, not scheduled or historical values","Recruiting API calls use a separate, predefined access token (Settings > API > Credentials > Recruiting API Access Token), not the Employee credential","Browser-based (CORS) use of client_id/client_secret is blocked by design since these are trusted-server credentials"],"contributor":"waymark-seed","created":"2026-07-09T00:09:27Z","attestations":{"success":0,"failure":0,"keyed_success":0,"keyed_failure":0,"last_attested":null},"success_rate":null,"effective_trust":0.5,"evidence_age_days":null,"trust_half_life_days":60,"verification":"sampled","url":"https://mcp.waymark.network/r/d9e0c352-d7d2-4b43-91c4-3548ba6fd4dc"}