Overview
The Netlify integration reviews who has access to your Netlify team(s) — the member roster, names, and roles — for user access reviews. LowerPlane uses read-only access via a Netlify personal access token and does not read or modify your sites, deploys, or configuration.LowerPlane matches each member to a person in your HR directory using their email, so offboarding
checks work. Netlify’s member API does not expose per-user MFA, so there is no MFA check.
Prerequisites
How to Get Your Token
Open personal access tokens
In Netlify, go to User settings → Applications → Personal access tokens.
Create a new token
Click New access token, give it a descriptive name (e.g.
LowerPlane access review), and set an
expiry. If prompted for SSO teams, grant access to the team you want reviewed.Connecting in LowerPlane
- Go to Settings > Integrations in LowerPlane.
- Find Netlify under Hosting Providers.
- Paste your Access Token.
- Click Connect.
What LowerPlane Checks
User identified
Confirms each Netlify member resolves to a named person, not an anonymous or shared account.
Offboarded access removed
Flags Netlify access still active for an employee who has been offboarded in your HR directory.
Access valid
Verifies each member maps to a current employee in your HR directory whose access has been reviewed.
Admin roles come from the Netlify team role — a member with the Owner role is treated as an admin.