Stackleaks
Sign in

Which tools Stackleaks scans, and what each needs

← All help articles

Three connection styles, depending on what each vendor offers. Every one is read-only, and every scope we hold is listed on What we can see.

One-click OAuth

Google Workspace, Microsoft 365, Slack, Zoom, ClickUp, HubSpot, Pipedrive, GitHub Copilot, GitLab, Linear. Click connect, approve the consent screen, done. Fine print per tool: Slack asks an optional second question about plan visibility (their consent wording is scarier than the reality — we explain before you click). HubSpot requires a Super Admin to authorize — and if an agency manages your portal, ask them for two permissions first. Zoom and Slack want a workspace/account admin. GitHub installs as an app on your organization. GitLab wants a Maintainer or Owner of your top-level GitLab.com group — billable seats only exist there, and if you maintain several groups you pick one right after consent. Linear asks for read only — any workspace member can connect, and the plan and billed seat count come straight from Linear.

Admin API keys

Atlassian, OpenAI, Anthropic Claude (Enterprise). You create a read-scoped key in the vendor's console and paste it — we verify it with a single call before storing anything, encrypted. Step-by-step for the fiddly one: the Atlassian key guide.

CSV upload

Claude Team (Anthropic offers no API for it) and any tool we don't cover yet: export the member list and upload it.

Missing your tool? Pick it in your stack anyway — the picks decide what we build next.