Skip to content

Slack

The Slack integration connects your Slack workspace or Enterprise Grid organization to Oneleet, syncing channels, users, and guest users as assets. This enables Oneleet to monitor user access, 2FA status, and channel configuration.

  • Channels — public and private channels (excluding archived channels)
  • Users — workspace members, including roles (Admin, Owner, Primary Owner) and 2FA status
  • Guest users — restricted and ultra-restricted users (multi-workspace guests, single-channel guests)

To set up the Slack integration, navigate to Integrations > Add integration > Slack.

Oneleet uses OAuth to connect to the Slack API. You will first select your Slack plan type, then complete the OAuth authorization flow.

Oneleet supports two Slack plan types with different permission requirements:

  • Standard (Free, Pro, Business+)
  • Enterprise Grid

Select the plan type that matches your Slack workspace.

You must be a workspace owner or administrator to authorize the integration.

Bot scopes:

  • users:read — read user list
  • channels:read — read channel information
  • groups:read — read private channel information
  • team:read — read workspace information
  • chat:write — send messages (for notifications)
  • app_mentions:read — read app mentions
  • mpim:read — read multi-person DM channels

User scopes:

  • users:read — read user list
  • users:read.email — read user email addresses

You must be an Organization Owner or have both Organization User Admin and Channels Admin roles.

Bot scopes: same as Standard scopes

User scopes:

  • users:read — read user list
  • users:read.email — read user email addresses
  • admin.users:read— read users across workspaces in the Slack Enterprise Grid organization
  • admin.teams:read — read teams across workspaces in the Slack Enterprise Grid organization
  1. Select your Slack plan type (Standard or Enterprise Grid)
  2. Click Connect
  3. You will be redirected to Slack to authorize Oneleet
  4. Grant the requested permissions
  5. Slack will redirect you back to Oneleet

If you need to refresh your OAuth credentials, navigate to the integration settings, select your plan type, and click Reconnect.

Once Slack is connected, Oneleet can deliver notifications to a shared channel, as direct messages to individual members, or both.

To finish setting this up, under Settings > Workspace > Notifications:

  1. On the Slack channels tab, choose the channel that receives notifications. Both public and private channels are supported; private channels appear in the selector only after you add the Oneleet app to the channel in Slack. Because notifications may include sensitive data such as vulnerability alerts and PII, Oneleet recommends using a private channel with access limited to authorized users.
  2. On the Notifications tab, select the Slack connector used to match members to their Slack accounts. Direct messages are not delivered until a connector is selected.
  3. Link each member’s Slack account on the selected workspace to their profile, on the Members page.

Notifications addressed to a single person are delivered only as a direct message to that person. Organization-wide notifications are posted to the channel and sent as a direct message to each matched member, so a member may see the update both places. Members without a linked Slack account simply don’t receive DMs — the shared channel post is unaffected.

For per-notification channel routing, and for choosing which notifications reach Slack at all, see Notifications.