OneLogin Integration
SSO usage patterns, access provisioning, and security compliance.
Overview
Analyze OneLogin SSO usage to understand application access patterns, provisioning workflows, and security compliance. Corvana identifies access governance gaps and shadow IT.
Prerequisites
- OneLogin admin or owner access to authorize the OAuth connection
- A Corvana Assess account with an active assessment engagement
OAuth Scopes
Corvana requests the minimum necessary permissions — always read-only. The following scopes are requested during the OAuth authorization flow:
| Scope | Access Level |
|---|---|
read | Read-only |
Data We Collect
Corvana collects only structural metadata — never content, PII, or sensitive data. The following data points are analyzed:
- SSO login patterns
- Application assignment distribution
- Provisioning workflow timestamps
- Directory sync patterns
- Policy compliance metrics
Data We Never Collect
To protect your privacy and security, the following data is explicitly excluded from collection:
- Never: User passwords
- Never: Authentication tokens
- Never: Security certificates
- Never: Personal identifiers
- Never: API credentials
Setup Steps
Step 1: Navigate to Integrations
From your Corvana Assess dashboard, open the left sidebar and click Integrations.
Step 2: Connect OneLogin
Find the OneLogin card and click Connect OneLogin. This initiates the OAuth flow.
Step 3: Authorize Access
Review the requested permissions on OneLogin's authorization page and click Allow. Corvana requests read-only access only.
Step 4: Verify Connection
Return to the Corvana dashboard. The OneLogin card should now show "Connected" with a green indicator. Data collection begins within minutes.
Disconnecting
You can disconnect OneLogin at any time from the Integrations dashboard. Click the connected OneLogin card and select Disconnect. All collected metadata is permanently deleted within 24 hours. You can also revoke access directly from OneLogin's admin panel.
Troubleshooting
The OneLogin connection shows "Disconnected"
Try reconnecting from the Integrations dashboard. If the issue persists, check that your OneLogin admin has not revoked the OAuth authorization.
I don't see any data after connecting
Data collection typically begins within 5-10 minutes. If no data appears after 30 minutes, check your connection status and ensure the account has the required permissions.