Skip to content

Reference

WorkOS

Connect WorkOS to Alter Vault for secure API access

Use WorkOS credentials to make authenticated API calls through Alter Vault without exposing API keys in code.

PropertyValue
Provider IDworkos
CategoryDeveloper Tools
Credential TypeBearer Token

Log in to the WorkOS Dashboard

Log in to the WorkOS Dashboard at dashboard.workos.com.

Go to API Keys

Copy your API Key

Copy your API Key.

Open the Developer Portal

Go to portal.alterauth.com and navigate to the application.

Add WorkOS

Go to Managed Secrets > Add Provider > WorkOS.

Enter credentials

Paste your API Key into the credential field.

Save

Click Save. You’ll receive a grant_id to use with the SDK.

response = await alter_app.request(
HttpMethod.GET,
"https://api.workos.com/sso/connections",
grant_id="YOUR_GRANT_ID",
)

Alter policy rules can target these attested operations and families for operation-level and parameter-aware controls.

Operation IDFamiliesMethodProvider path
sendInvitationadmin, sendPOST/user_management/invitations
createMagicAuthsendPOST/user_management/magic_auth
listInvitationsreadGET/user_management/invitations
authenticatewritePOST/user_management/authenticate
createPasswordResetwritePOST/user_management/password_reset
createUserwritePOST/user_management/users
getUserreadGET/user_management/users/{id}
listUsersreadGET/user_management/users
updateUserwritePUT/user_management/users/{id}
deleteUserdeleteDELETE/user_management/users/{id}
getAuthorizationUrlreadGET/user_management/authorize
createOrganizationMembershipadminPOST/user_management/organization_memberships
listOrganizationMembershipsreadGET/user_management/organization_memberships
createOrganizationwritePOST/organizations
getOrganizationreadGET/organizations/{id}
listOrganizationsreadGET/organizations
updateOrganizationwritePUT/organizations/{id}
deleteOrganizationdeleteDELETE/organizations/{id}
createOrganizationDomainadminPOST/organization_domains
verifyOrganizationDomainadminPOST/organization_domains/{id}/verify
createAuditLogEventwritePOST/audit_logs/events
createAuditLogExportwritePOST/audit_logs/exports
createWebhookEndpointadminPOST/webhook_endpoints
listWebhookEndpointsreadGET/webhook_endpoints
generatePortalLinkadminPOST/portal/generate_link
getConnectionreadGET/connections/{id}
listConnectionsreadGET/connections
listDirectoriesreadGET/directories
listDirectoryGroupsreadGET/directory_groups
listDirectoryUsersreadGET/directory_users
listEventsreadGET/events
ssoAuthorizereadGET/sso/authorize
ssoProfilereadGET/sso/profile
ssoTokenreadPOST/sso/token

Report an issue with this page

Necessary

Required for sign-in, security, authorization, and remembering your choices.

Always active

Analytics

Helps us understand which product and documentation features are useful.

Performance diagnostics

Uses performance tracing and privacy-masked session replay to diagnose problems.

You can change these choices at any time from Cookie settings.