Okta Secure Access Monitor plugin

Early Access release

The Secure Access Monitor (SAM) plugin is a managed Chrome extension designed to help you address the critical security gaps created by unmanaged OAuth grants and trust relationships. Your users can create these grants and trust relationships without Okta brokering the tokens. The SAM plugin monitors your users' browsers for these grants, providing Okta Identity Security Posture Management (ISPM) with the visibility required to mitigate those risks.

The plugin monitors the browser environment for new OAuth grants to external services. When a grant is detected, this plugin enriches the data with essential user context and securely transmits it to Okta. This information is then ingested and analyzed within ISPM. ISPM provides the visibility that you need to identify risks. You can take remediation actions against shadow AI agents and OAuth grants from the ISPM console.

When a new OAuth grant is discovered, the plugin collects the following information, enriches it, and sends it to ISPM:

  • URL

  • Type [Redirect | Direct | Grant]

  • Okta UserId

  • Resource

  • Client

  • Scopes

  • Device/Browser Info (OV)

Get started

Configure the Secure Access Monitor plugin