What Oleria discovers
- User accounts and profile attributes synced from your ChatGPT workspace directory.
- Group membership across your workspace.
Prerequisites
- Admin access in your ChatGPT workspace with permission to enable SCIM provisioning and generate a SCIM token.
- Admin access on the Oleria platform to add a new integration.
The exact location of these settings can change over time. If the steps below don’t match what you see, refer to ChatGPT’s own SCIM provisioning documentation.
Get your SCIM credentials from ChatGPT
1
Enable SCIM provisioning in ChatGPT
Sign in to your ChatGPT workspace as an admin, go to workspace settings, and enable SCIM provisioning.
2
Copy your SCIM Base URL and Authentication token
ChatGPT generates a SCIM endpoint URL and token when you enable provisioning. Copy both values before you leave the page - you’ll paste them into Oleria in the next section:
- SCIM Base URL - the HTTPS SCIM endpoint for your ChatGPT workspace.
- Authentication token - the SCIM token ChatGPT generates.
ChatGPT displays the token only once. Copy and store it securely, and rotate it per your organization’s security policy.
Connect ChatGPT to Oleria
1
Open the integration
Go to your Oleria workspace, select Integrations, then select the ChatGPT tile.
2
Complete the connection form
Select Continue and fill in the connection form:
3
Save the integration
Select Connect to validate the credentials and save the integration.
Verify the integration
Confirm the new instance appears in your Oleria workspace under Connected Integrations with a status of Healthy. Oleria syncs users and groups from ChatGPT on the standard SCIM provisioning schedule once the initial sync completes.If ChatGPT rotates your SCIM token, update the Authentication token in Oleria by editing the integration.
Governance actions
Oleria can also invoke lifecycle actions in ChatGPT when the token you provide has write access:- Enable or disable a user account
- Add or remove a user from a group
- Create a new user or group
Many teams start with a read-only token for visibility, then grant write access once they’re ready to automate remediation in ChatGPT.

