jump to content

Dotfile

Connect Dotfile as an access review source using a workspace admin API key so the platform can list every member of your Dotfile workspace.

View as Markdown

the platform reads your Dotfile workspace’s members through the Dotfile API so you can review who has access.

  • the platform organization administrator access
  • The admin role in the Dotfile workspace (Dotfile requires you to be an admin of the workspace to generate API keys)
the platform fieldDotfile fieldNotes
Namefirst_name and last_nameFalls back to the email address
Emailemail
Roleroleowner, admin, member, or the name of a custom role
AdminroleFlagged as an administrator when role is owner or admin
Statussuspended_atInactive once a suspension timestamp is set
MFANot supported
Last loginNot supported
External IDidStable identifier used to track the account across reviews
Created atcreated_atWhen the user was created in the workspace

the platform requests suspended users as well as active ones, so a suspended member still appears in the campaign, marked inactive.

  1. In the Dotfile console, signed in as a workspace admin, go to Workspace settings > API keys.
  2. Create a new key and give it a name (e.g. Probo Access Review). Dotfile documents no scope or permission to set on a key.
  3. Copy the key and store it securely (password manager, secret manager). Dotfile hashes and encrypts it, so you cannot read it again.
  1. In the platform, go to Access Reviews > Sources > Add Source.
  2. Find Dotfile, click API Key, paste the key, and click Connect.

the platform names the source after your Dotfile workspace and pulls its members into your campaigns.

  • Key rejected. Confirm a workspace admin generated the key and that it has not been replaced since. the platform sends it in the X-DOTFILE-API-KEY header, so a key from a different workspace will not authenticate.
  • No members appear. An API key is workspace wide, so check that it belongs to the workspace you intend to review.

Ultima actualizare: