Okta Integration
Authentication patterns, access management, and identity governance.
Overview
Connect Okta to analyze authentication patterns, application access distribution, and identity governance workflows. Corvana identifies access sprawl and security compliance gaps.
Prerequisites
- Okta admin or owner access to authorize the OAuth connection
- A Corvana Assess account with an active assessment engagement
OAuth Scopes
Corvana requests the minimum necessary permissions — always read-only. The following scopes are requested during the OAuth authorization flow:
| Scope | Access Level |
|---|---|
okta.users.read | Read-only |
okta.apps.read | Read-only |
okta.logs.read | Read-only |
Data We Collect
Corvana collects only structural metadata — never content, PII, or sensitive data. The following data points are analyzed:
- Authentication event patterns
- Application access distribution
- MFA adoption rates
- Group membership structure
- Login frequency by application
Data We Never Collect
To protect your privacy and security, the following data is explicitly excluded from collection:
- Never: User passwords or credentials
- Never: MFA tokens
- Never: Security questions
- Never: API tokens
- Never: Personal email addresses
Setup Steps
Step 1: Navigate to Integrations
From your Corvana Assess dashboard, open the left sidebar and click Integrations.
Step 2: Connect Okta
Find the Okta card and click Connect Okta. This initiates the OAuth flow.
Step 3: Authorize Access
Review the requested permissions on Okta's authorization page and click Allow. Corvana requests read-only access only.
Step 4: Verify Connection
Return to the Corvana dashboard. The Okta card should now show "Connected" with a green indicator. Data collection begins within minutes.
Disconnecting
You can disconnect Okta at any time from the Integrations dashboard. Click the connected Okta card and select Disconnect. All collected metadata is permanently deleted within 24 hours. You can also revoke access directly from Okta's admin panel.
Troubleshooting
The Okta connection shows "Disconnected"
Try reconnecting from the Integrations dashboard. If the issue persists, check that your Okta admin has not revoked the OAuth authorization.
I don't see any data after connecting
Data collection typically begins within 5-10 minutes. If no data appears after 30 minutes, check your connection status and ensure the account has the required permissions.