Slack
Connect Slack to vScope to inventory the user accounts in your Slack workspace, including admins, bots, and deactivated users.
Prerequisites
Section titled “Prerequisites”- A standard Slack workspace where you can create and install an app. Slack Enterprise Grid, where apps are installed at the organization level, is not covered by this page.
- A Slack app with a token that has the
users:readandusers:read.emailOAuth scopes (added in Create a Slack app and token). - Network access from the vScope server or Discovery Proxy to
https://slack.comover HTTPS (port443).
Create a Slack app and token
Section titled “Create a Slack app and token”- Go to Slack API: Your Apps and sign in.
- Click Create New App > From scratch.
- Name the app, for example
vScope, select your workspace, and click Create App. - In the app, go to OAuth & Permissions.
- Under Scopes > Bot Token Scopes, add:
users:readusers:read.email
- Click Install to Workspace and approve the requested permissions.
- Copy the Bot User OAuth Token (it starts with
xoxb-).
Add the Slack credential in vScope
Section titled “Add the Slack credential in vScope”- In vScope, go to Discovery > Credentials.
- Click Create credential and choose Slack.
- In OAuth Token, paste the Bot User OAuth Token you copied (for example
xoxb-...). Enter only the token. vScope adds theBearerprefix automatically. - Optional: add a Note to describe the credential.
- Optional: assign a Proxy if vScope should connect to Slack through a Discovery Proxy.
- Click Test Credential.
- Save the credential and run discovery.
Confirm the result
Section titled “Confirm the result”After discovery completes, the Slack accounts appear under User Account in vScope.
Troubleshooting
Section titled “Troubleshooting”Authentication fails
Section titled “Authentication fails”Slack returns invalid_auth or not_authed when the token is wrong or expired. Confirm that the OAuth Token is a current, valid token (for example xoxb-...) and has not been revoked in Slack.
Permission or scope errors, or missing email addresses
Section titled “Permission or scope errors, or missing email addresses”Slack returns missing_scope when the token lacks a required scope. Confirm the app has both users:read and users:read.email, then reinstall the app so the scopes take effect.
If accounts are inventoried but emails are empty, the token is missing users:read.email. Add the scope, reinstall the app, and run a new discovery.
No or partial Slack inventory
Section titled “No or partial Slack inventory”If the credential test succeeds but the inventory is incomplete:
- Confirm the token has the required scopes (see above).
- Confirm the vScope server or Discovery Proxy can reach
https://slack.comon HTTPS (port443). - Run a new discovery.