Overview

The Slack integration monitors your workspace’s user access, security configurations, and sharing settings. LowerPlane syncs member data, security policies, access logs, and external sharing configurations to support access reviews and compliance monitoring.

Authentication

Slack uses OAuth 2.0 for authentication. When you connect, you’ll be redirected to Slack to authorize LowerPlane with your workspace.

Required Permissions (OAuth Scopes)

ScopeWhat It GrantsWhy LowerPlane Needs It
channels:readRead channel metadataInventory public and private channels for data governance
groups:readRead private channel metadataInclude private channels in the access review scope
users:readRead user profilesList workspace members for access reviews and offboarding checks
users:read.emailRead user email addressesMatch Slack users to HR records for offboarding detection
team:readRead workspace informationCollect workspace-level security settings
files:readRead file metadataMonitor external file sharing policies
usergroups:readRead user groupsUnderstand group-based access assignments

What LowerPlane Collects

Workspace Members

User list with email, role, MFA status, and account status for access reviews

Security Settings

Workspace-level security policies including MFA enforcement and session settings

Access Logs

Login activity and session data for monitoring

External Sharing

Channel sharing configurations and external collaboration settings

Critical System Access

Slack is automatically registered as a critical system in your access review program. LowerPlane syncs all workspace members with their roles and access levels, enabling:
  • Periodic user access reviews
  • Offboarded employee detection (cross-referenced with HR data)
  • Role-based access monitoring

Security Tests

LowerPlane runs automated tests against your Slack workspace:
TestSeverityDescription
User access should be validHighVerifies all Slack users are identified and mapped to HR records
Access should be removed for offboarded usersCriticalDetects terminated employees who still have active Slack accounts
MFA should be enabledCriticalChecks MFA enforcement at the workspace level

Sync Frequency

Slack data syncs based on your configured integration sync schedule (default: daily). Each sync collects the latest member list, security settings, and sharing configurations.