> ## Documentation Index
> Fetch the complete documentation index at: https://docs.oleria.com/llms.txt
> Use this file to discover all available pages before exploring further.

# ThoughtSpot

> Connect your ThoughtSpot instance to Oleria to continuously discover user, group, and role access across your analytics platform.

ThoughtSpot is an AI-powered analytics platform for search-driven business intelligence. Connect your ThoughtSpot instance to Oleria to bring user, group, and role access into your identity and access graph, without a dedicated ThoughtSpot-specific integration.

## What Oleria discovers

* User accounts and profile attributes synced from your ThoughtSpot instance.
* Groups and their memberships.
* Roles assigned to each user.

Oleria uses this data for dormant account detection and access reviews, refreshed on ThoughtSpot's standard sync schedule.

## Prerequisites

* Admin access in ThoughtSpot with permission to create an OAuth client or generate a bearer token.
* Admin access on the Oleria platform to add a new integration.

<Note>
  The exact location of these settings can change over time. If the steps below don't match what you see, refer to ThoughtSpot's own API documentation.
</Note>

## Get your SCIM credentials from ThoughtSpot

<Steps>
  <Step title="Generate a bearer token in ThoughtSpot">
    Sign in to ThoughtSpot as an admin, go to the **Develop** tab, and create an OAuth client or generate a bearer token for API access.
  </Step>

  <Step title="Copy your SCIM Base URL and Authentication token">
    Copy both values before you leave the page - you'll paste them into Oleria in the next section:

    * **SCIM Base URL** - the HTTPS API endpoint for your ThoughtSpot instance.
    * **Authentication token** - the bearer token you generated.

    <Note>
      Copy the token now. Many applications display it only once. Store it securely and rotate it per your organization's security policy.
    </Note>
  </Step>
</Steps>

## Connect ThoughtSpot to Oleria

<Steps>
  <Step title="Open the integration">
    Go to your Oleria workspace, select **Integrations**, then select the **ThoughtSpot** tile.
  </Step>

  <Step title="Complete the connection form">
    Select **Continue** and fill in the connection form:

    | Field                | Notes                                                                                      |
    | :------------------- | :----------------------------------------------------------------------------------------- |
    | Instance name        | Optional. Short, recognizable label for this connection (for example, `thoughtspot-prod`). |
    | SCIM Base URL        | Required. The HTTPS API endpoint copied from ThoughtSpot.                                  |
    | Authentication token | Required. The bearer token issued by ThoughtSpot.                                          |
  </Step>

  <Step title="Save the integration">
    Select **Connect** to validate the credentials and save the integration.
  </Step>
</Steps>

## Verify the integration

Confirm the new instance appears in your Oleria workspace under **Connected Integrations** with a status of **Healthy**. Oleria syncs users, groups, and roles from ThoughtSpot on the standard SCIM provisioning schedule once the initial sync completes.

<Note>
  If ThoughtSpot rotates your bearer token, update the Authentication token in Oleria by editing the integration.
</Note>

## Governance actions

Oleria can also invoke lifecycle actions in ThoughtSpot when the token you provide has write access:

* Enable or disable a user account
* Add or remove a user from a group
* Create a new user or group

<Note>
  Many teams start with a read-only token for visibility, then grant write access once they're ready to automate remediation in ThoughtSpot.
</Note>

## Contact us

For questions about this integration, contact us at [support@oleria.com](mailto:support@oleria.com).
