Overview
The Slack integration monitors your workspace’s user access, security configurations, and sharing settings. LowerPlane syncs member data, security policies, access logs, and external sharing configurations to support access reviews and compliance monitoring.Authentication
Slack uses OAuth 2.0 for authentication. When you connect, you’ll be redirected to Slack to authorize LowerPlane with your workspace.Required Permissions (OAuth Scopes)
| Scope | What It Grants | Why LowerPlane Needs It |
|---|---|---|
channels:read | Read channel metadata | Inventory public and private channels for data governance |
groups:read | Read private channel metadata | Include private channels in the access review scope |
users:read | Read user profiles | List workspace members for access reviews and offboarding checks |
users:read.email | Read user email addresses | Match Slack users to HR records for offboarding detection |
team:read | Read workspace information | Collect workspace-level security settings |
files:read | Read file metadata | Monitor external file sharing policies |
usergroups:read | Read user groups | Understand group-based access assignments |
What LowerPlane Collects
Workspace Members
User list with email, role, MFA status, and account status for access reviews
Security Settings
Workspace-level security policies including MFA enforcement and session settings
Access Logs
Login activity and session data for monitoring
External Sharing
Channel sharing configurations and external collaboration settings
Critical System Access
Slack is automatically registered as a critical system in your access review program. LowerPlane syncs all workspace members with their roles and access levels, enabling:- Periodic user access reviews
- Offboarded employee detection (cross-referenced with HR data)
- Role-based access monitoring
Security Tests
LowerPlane runs automated tests against your Slack workspace:| Test | Severity | Description |
|---|---|---|
| User access should be valid | High | Verifies all Slack users are identified and mapped to HR records |
| Access should be removed for offboarded users | Critical | Detects terminated employees who still have active Slack accounts |
| MFA should be enabled | Critical | Checks MFA enforcement at the workspace level |