Skip to content

Changelog

New
  • View all accounts in the integrations All accounts tab
  • Filter accounts by email domain
  • Filter the people list by group or team membership
Changed
  • Update an integration's connection or permissions by re-authenticating or editing the API key
Deprecated
  • Remove the integration display name. This is generated based on the integration name and details, like organization name or domain
Fixed
  • Issue with a collapsed org chart node showing an incorrect hidden-report count
  • Issue with relative timestamps showing dates in the future
  • Issue with audit events showing a raw resource ID instead of its name
  • Issue with dropping a file outside a dropzone opening it in the browser instead
New
  • View your plan, usage, and billing contact on a new Billing page
  • Audit logs and access events include information on the role that was granted
Changed
Deprecated
  • Remove the ability to automatically create Google and Okta groups when creating a new team
Fixed
  • Issue with non-Okta identity providers showing no synced apps
  • Issue with being unable to save a review after removing the last app from its scope
  • Issue with a new review copying its scope from an unfinished draft instead of the last completed review
  • Issue with an app showing as Connected before its first sync in a review had finished
New
  • See resources that have access to other resources, as part of the resource page and the resource's access graph
  • See access that a subject has to resources in each integration
  • Copy the error message from a failed integration sync
Fixed
  • Issue with pickers being slow or unresponsive for long lists, like companies with many users
New
  • View a list of accounts that have synced from an integration in the Accounts tab
  • View information about an account from an integration on account detail page
  • See a user's GitHub and Slack handles in their contact information on their profile
Fixed
  • Issue with removing an integration when one of its accounts had access to a resource that the integration owned

User access reviews

Use Oblique to conduct user access reviews, to regularly review who has access to what in your environment based on your compliance obligations. For each review, capture accounts from integrations like your identity providers, directly from an app, or manually via a screenshot or pasting in accounts. Then, make a decision to approve, remove, or change access, and complete any remediation needed based on those decisions.

Oblique lets you define the scope of your review, and keeps track of the accounts, the decisions you made for each, and any remediation items needed. Oblique also generates a PDF report you can share with your auditor of your completed review.

Start a review from the Reviews tab.

New
  • See a user's Okta and Google accounts on their profile
Changed
  • Redesign to use a sidebar for navigation
New
  • See a user's integration accounts on their profile
  • See a user's integration accounts in the access graph
Fixed
  • Issue with the per-user access graph showing a stale layout and dialog title
  • Issue with the audit log failing to load after a referenced account is deleted

GitHub integration

Oblique’s GitHub integration lets you understand the access your users have in GitHub, by syncing your GitHub organization’s members, teams, and team membership to Oblique. The integration is currently at the organization-level and read-only.

When you connect an integration like GitHub or Slack, Oblique imports the accounts in it and matches each one to a user by email address. Imported entitlements are attached to those accounts, so Oblique can tell you which users have access to which resources using those accounts.

New
  • Warning when the Google integration is missing necessary permissions
Fixed
  • Issue with an imported entitlement always naming Okta as the source
New
  • Export the People page as a CSV
Fixed
  • Issue with the audit log's diff view not displaying properly
  • Issue with users who aren't admins being able to request roles on draft listings
New
  • View authentication configuration, including sign-in method, identity provider, and allowed email domains or addresses, on the General settings page
Fixed
  • Issue with case-sensitive MCP search not filtering teams or groups by display name
  • Issue with the audit log footer showing the incorrect log count
Changed
  • Deleting an API key requires typing the key name to confirm
  • Updated dark mode with clearer visual hierarchy
  • Navigate drawers with keyboard shortcuts across access and audit log tables
Changed
  • When adding an auto-approval policy, see member counts for teams and groups
Fixed
  • Issue allowing the same user to be selected multiple times when editing team membership
Changed
  • Changes to integrations, groups, teams, users, listing roles, and API keys update in real time, without requiring a page reload
  • Terraform export zip filenames include a UTC timestamp
New
  • Typical approval times for listings are shown on the listing detail page and on the request
  • Slack notification sent to reviewers when they are removed from a request
  • Keyboard shortcuts for common actions. Where available, shortcuts are shown in tooltips and dropdown menus
  • Resource attributes are synced from integrations, and shown on resource detail pages
  • Copy link buttons for group and resource pages
Changed
  • Audit log for events completed via the Terraform provider show Terraform as the client
  • Improvements to the access graph to collapse large numbers of linked objects

Terraform provider

Oblique’s Terraform provider oblique-security/oblique lets you objects in Oblique via Terraform and as code workflows, including integrations, listings, groups, and admins. Once objects are managed by Terraform, they can no longer be modified from the Oblique app, and when you run terraform plan, Terraform will generate a preview of changes in Oblique for your review.

You can copy the Terraform config for objects individually, or for all objects by going to Manage, the to the Terraform page. Once you terraform apply this configuration, the Oblique app will show that they are managed by Terraform and cannot be modified.

New
  • Request access directly from a group or team detail page
  • See which Okta groups are push groups and filter for these in the resources list
Changed
  • Requests list redesigned as an inbox view, allowing you to see the list of relevant requests and the request detail side by side
  • Request detail redesigned to use tabs with changes and affected users
  • Theme uses system settings by default
Fixed
  • Publishing a listing is blocked when resources cannot be switched to push mode due to external constraints, such as when they have enabled group rules
New
  • Create a listing directly from an Okta app resource page
Changed
  • Okta resource pages consolidate display for different group features
  • Recommendations for redundant access link to the listing
Fixed
  • Skip Terraform-managed entitlements when generating recommendations
New
  • Active MCP sessions can now be managed in user settings
Changed
  • Role pre-fills when requesting access on behalf of another user
  • Newly added members appear at the top of team update previews
Fixed
  • Mobile layout issues in access tables across multiple pages
Changed
  • Admin pages have moved from Settings to a new Manage section in the navigation
  • Attribute sources on the Attributes page deep-link to the relevant integration attributes page
Fixed
  • Issue with team update preview reporting unchanged access as changed when expiry times matched
  • Audit log diff colors in dark mode

MCP server

Oblique’s remote MCP server lets you connect to Oblique from the MCP client of your choice. The server is authorized as your user, so both admins and end users can use it to take actions like reading current group membership, making access requests, or configuring policies.

The MCP server supports two scopes: standard, for reading all information available to you and making requests; and privileged, for reading and writing changes directly.

To connect a client, click on your profile picture in the upper right corner, select Account settings, then navigate to the MCP page.

Recommendations

Recommendations are suggestions from Oblique to simplify entitlements without changing access.

Oblique suggests changes to deduplicate redundant access, where a user has access both directly and indirectly, and to consolidate access, to migrate direct access common to multiple users to a group they all belong to. Recommendations only suggest changes that won’t alter the resulting access in any way.

You can find recommendations for your tenant in the Recommendations tab under Manage. Create a request from a recommendation to apply it.

New
  • If you have an open request for a listing role, see this status on the listing detail page
  • Access graph for an Okta group shows the Okta apps it's assigned to
Changed
  • Attribute drawer shows separate timestamps for when the attribute was last updated and when the integration last synced
Fixed
  • Issue with extending a listing entitlement indefinitely
  • Issue with overlapping listings shortening existing access durations on role requests
New
  • If you have an open request to join a team, see this status on the team detail page
  • Sort access and enitlement tables by specificity, with direct entitlements first, then teams, then groups
Changed
  • Consistent sort defaults and options across access and entitlement tables
  • 'Canonical' attributes renamed to 'core' attributes
  • A customer's Oblique deployment renamed from 'instance' to 'tenant'
Fixed
  • Issue with title truncation in request hovercard
  • Issue with the 'Add role' dialog suspending the listings page
  • Group access timelines correctly show 'access expired' rather than 'lost access to' when access expires
  • Issue with the 'Oblique auto-applied this request' event missing from auto-applied requests
New
  • Send Slack notifications to private channels

Approve requests in Slack

With the Oblique Slack app, reviewers can receive request notifications and approve them without leaving Slack.

Approving from Slack is disabled by default. An admin can enable approvals from Slack from the Slack integration details, selecting the Settings tab, and under Slack settings by toggling on Approvals from Slack.

From a message in Slack, a reviewer can select Approve or Close to respond to the request.

New
  • See your instance region in a general settings page
  • See Okta app status on resource detail page, resource hovercard, and in the resources list
  • Filter Okta groups by Okta group rule
Changed
  • Updated groups page to show your groups more prominently
  • Improved onboarding and empty state pages
New
  • Browse attributes across all connected integrations in a global attributes page
  • Create an entitlement to a resource directly from the command palette
  • See additional information about API keys, including the key name, creator, and permissions, in a hovercard
Changed
  • Browse attributes from a specific integration in a per-integration attributes page
Fixed
  • Issue with access graph preserving the position of nodes as you moved them
  • Issue with team requests showing a blank access section when no access changes were made
New
  • User profile pages and group and team detail pages show what access they are auto-approved for
  • Timeline events coming from an integration (e.g., Okta) show the integration as the source, making it easier to distinguish changes made by Oblique from those triggered by your identity provider
  • Additional Okta user attributes of city, employeeNumber, organization, and primaryPhone synced
  • Filter the groups, listings, and resources on a user's profile page
Changed
  • Improved search in pickers and dropdowns
  • Resource detail page shows an Add entitlement button instead of showing the current user's access status
New
  • Entitlement drawer on user, group, and team detail pages showing all entitlements that grant access to a given resource
  • Access change indicator in the requests inbox shows shows the scope of change of each request at a glance
  • Access table shows entry counts on each tab, to understand how many listings and resources a user, group or team has on their detail page
  • Okta groups with associated group rules have a group rule badge, with group rule names shown in the resource hovercard
  • Organization owner shown with a badge in admins table on the admins page
Changed
  • Update owners for groups, teams, and listings by making a request
  • If a request is approved with an auto-approval policy, that's more clearly shown on the request detail page and in the request timeline
  • Changes to listing roles update automatically
Fixed
  • Issue with profile attributes section displaying incorrect values when multiple integrations share the same attribute key
Changed
  • Resource-based access visible to admins on user, group, and team detail pages
Fixed
  • Issue with audit log entries for listing role policies linking to the wrong resource

Auto-approval policies

Auto-approval policies allow members of a group to claim access to a listing role without requiring a human approval. An auto-approval policy also specifies a duration for the access, and whether or not a justification is required when claiming access.

Admins can add auto-approval policies to a listing from the listing detail page, by selecting Manage listing, and then under Auto-approved groups, selecting Add auto-approved group.

New
  • See exactly who will review a request and why, when creating the request
Changed
  • Request access directly from a listing detail, not from the overall access catalog
  • Updated filtering on the Requests page, allowing you to filter requests that are waiting on you to take action
  • Request includes full listing description
Fixed
  • Issue with adding or removing a role with overlapping resources
  • Bug report dialog not submitting
  • Audit log for expired entitlements reads "revoked access as it expired" instead of showing the expiration date
New
  • See the events affecting the access for a listing on the listing detail page
  • Search for listings on the Access page
  • A syncing indicator shows on listings whenever effective access is updating
Changed
  • Redesign of request detail page to display checks, approvals, and apply status cohesively
  • Access previews always show unchanged access, alongside changes
  • Non-admin users can see suggested reporting groups when creating listings
  • Login page remembers the email address from your most recent login
  • Auto-apply request option is hidden when the requester cannot automatically approve the request
  • Users are consistently sorted by display name throughout the app
Fixed
  • Bug with resetting and overriding selected reviewers for team join requests
  • Bug with displaying long content dialogs, while still keeping headers and footers visible
New
  • Command palette search matches users by secondary email addresses
Fixed
  • Duplicate audit logs no longer written for creating a request
  • Reviewers who approved a request are listed even when none were explicitly requested
  • Switching tabs on a request no longer scrolls to the top of the page
New
  • See listings a user is the owner of on their profile
  • Navigate to Access page from command palette
Changed
  • Resources page moved to a tab under Integrations page
  • Timeline events distinguish between expired and revoked access
  • Reporting chain sorted by number of direct reports
  • Listing detail page shows resources associated with roles
  • Resource-based events hidden from non-admin users in the event timeline
  • Auto-applied requests attributed to Oblique in request timeline
Fixed
  • Access change badges count reflects number of unique users affected
  • Listings containing deleted resources no longer requestable
  • Incorrect event summary for entitlement removal
New
  • User profile access table shows how access granted via groups
  • Reporting groups that can be created appear when searching for subjects in listing access requests
  • Search listing access table for roles
Changed
  • Any user can create reporting groups, not just admins
  • Reporting group icon in event timeline
Deprecated
  • Resources no longer have owners. Use listings and listing owners instead
Fixed
  • Admin self-approval recorded in request timeline
  • Unclear error when creating a reporting group that already exists
  • Incorrect grouping of 'lost access' events in the event timeline
  • Long log lines overflowing in the log side panel

Reporting groups

Reporting groups define users who have the same manager, or are part of the same organization. These can then be granted access to resources or role assignments in Oblique.

There are two types of reporting groups: a user’s direct reports only, and a user’s organization, including their direct and indirect reports. The manager themselves is not included in the reporting group.

You can create a reporting group from the Groups tab, by selecting Add group, then Reporting group.

New
  • Selectively ignore users from an Okta integration, based on attribute value
  • Search for listing roles in the user and group access table
Changed
  • Draft listings are only visible to owners and admins
  • Access graphs collapse subgraphs for cleaner visualization
Deprecated
  • Removed per-user resource graphs
Fixed
  • Issue with editing listing roles from the resource detail page
  • Case-insensitive sorting of listings
New
  • Access graphs for users now display listing roles
  • Access graphs are now implemented for listings, displaying how users have access to roles
  • Previews of user access are now displayed when editing a listing role
  • Resources can now be searched by integration
Changed
  • Computed user access to listings on the listings page now shows expiry
  • Slack integration now displays the Workspace URL
Fixed
  • The subject picker for access requests to roles is now significantly faster
  • Draft listings are now correctly hidden from the access timeline
New
  • User access to listings better displays when a user has that access through teams or groups
  • Gaining and losing access to listing roles now appears on timelines for users, teams, and groups
  • Draft listings can now reference resources not managed by Oblique to help better preview listings before publishing
  • When publishing a draft listing, admins are given the option to convert reference resources to be managed by Oblique
  • Listings can now be created directly from a resource page
Changed
  • Slack now supports sending notifications to multiple public channels
  • Multiple subjects can now be granted access to a listing role in a single request
Fixed
  • Reworked the displayed access expiry when a user has entitlements through multiple groups and teams
  • Fixes sporadic issues with frontend asset fetching during system updates
  • Slack integrations that are incompletely configured now more accurately display that status
New
  • Edit expiry of a listing role assignment
  • Start a request for a listing role assignment from the command palette
  • Start a request for a specific listing role from the roles table of the listing detail page
  • Filter resources by associated listings
  • See more information about a listing in hovercard
  • See more information about a listing role in hovercard
Changed
  • Add Slack integration without enabling direct messages
  • Admins can see unlisted listings associated with a resource on the resource detail page
  • Roles on listings detail show description and number of users with the role
Fixed
  • Attribute-based group membership counts update immediately after creating the group
  • Incorrect count of users in the access table of the listings detail page
  • Bug when changing selected subject for an access request
New
  • Existing roles shown on listing detail page
  • Existing roles shown on request access form
  • Existing roles shown in command palette
  • Multiple entitlements for a user grouped on listing detail page
  • Copy audit log timestamp
  • Attribute detail drawer shows count of users with any value set and with no value set for the attribute
Changed
  • Expired entitlements are more explicit
  • Slack app joins channel when test notification is sent
  • This changelog is posted weekly instead of daily
Fixed
  • Team membership counts update immediately after creating the team
  • Deleted listings and roles are soft deleted so that they remain in audit logs
  • Slack app can be installed in a Slack workspace with a larger number of channels

Slack DMs for request notifications

The Oblique Slack app sends request notifications to individuals who are requestors or reviewers as direct messages. Reviewers are notified when they need to approve a request, and requestors are notified when the status of their request changes. Users can disable DMs in their notification settings.

The Oblique Slack app still sends notifications about all requests to a public Slack channel.

Changed
  • Update Slack channel using channel selector instead of channel ID

Listings

Listings are groups of related resources, typically used to present multiple access levels for the same application. These listings are presented to users in the access catalog, where they can request access. Resources are no longer visible to end users. Instead, listings are the primary way that users see, understand, and request access in Oblique.

Each listing has one or many roles, which represent a set of permissions. This often maps to an application role, like Admin or Editor.

Instead of requesting access to resources, users request access to roles in listings. When a user is assigned a role, they are automatically granted access to all resources mapped to that role.

Changed
  • Automatically select all reviewers for a check
Changed
  • When adding a Slack integration, pick the Slack channel from a dropdown
Changed
  • Slack app message tags requestor
New
  • Slack app supports platform notifications
Changed
  • Select domain from dropdown when adding a Google integration
New
  • User profile email is copyable
Changed
  • Preview of access changes shows change in expiry
Changed
  • Request summary for access change shows specific users and resources affected
  • Request summary for team membership change shows specific team and users affected
New
  • Filter audit logs for events from an integration
  • See most recent audit logs for an integration on the integration detail page
New
  • Access change events due to a request link to the request that made the change
Changed
  • Entitlements with indefinite access do not show the expiry
Changed
  • Access change events are batched into one expandable line in the timeline
Fixed
  • Mobile formatting of timeline of events affecting access

Timeline of access changes

View a timeline of access changes affecting a user, group, or resource on the user profile or attribute-based group, team group, or resource’s detail page.

Each item is an event that affected access, by adding or removing an entitlement. Access changes only include granted or revoked access, and do not include changes that edit entitlements, such as extending an entitlement.

Changed
  • Indirect ownership of groups, teams, and resources is shown on a user's profile
New
  • Users can edit the 'About' section on their profile
  • Filter groups by members
Fixed
  • Issue with 'Open in Okta' navigation for some Okta tenants
New
  • Filter groups by group type and member count
  • Filter resources by integration
  • The subjects of requests (including changes that are not yet applied) included in 'Targets' filter for audit logs
  • Service accounts included in 'Author' filter for audit logs
Fixed
  • Issue with previewing requests with no changes
  • Issue with creating some access requests for teams and groups
Changed
  • Filter audit logs by action, author, target, and target type
New
  • Sort membership tables alphabetically by name, or by recency of joining the group
Fixed
  • Issue with previewing the impact of access requests that are already applied
Changed
  • More complex filtering options for resource list page
Fixed
  • Issue with email fuzzy matching in filter for user list page
Changed
  • Okta syncs every 10 minutes instead of every 5 minutes
Fixed
  • Issue with detecting some Okta group rules
New
  • People list page with complex filtering
  • Copy button for user attributes
Changed
  • Ordering of content on request detail page
  • Better handling of large dropdown lists
  • Better handling of scroll location when navigating across app
Fixed
  • Issue with 'Open in Okta' navigation for some Okta tenants
Fixed
  • Disable editing individual entitlements for resources in Pull mode
  • Incorrect actor name in audit logs for changes synced from integrations
  • Missing audit log for updating canonical attributes
Fixed
  • Dark mode support for audit logs
  • Issue navigating access graph not closing graph view
New
  • Okta apps include Okta app ID
Fixed
  • Resource hovercard shown in access table
  • Sync built-in Okta groups, including the Everyone group
New
  • Import custom user attributes from Okta, for attributes with the type string
New
  • Login page
Fixed
  • Large access graphs not rendering
Changed
  • Redesign of audit logs, with summary information in the table and a copyable log diff in a drawer
  • Renamed 'Appearance' to 'Theme' (i.e. dark mode)
Fixed
  • Issue with adding new Google Workspace integrations in the Europe region
New
  • Sync user attribute division from Okta
Changed
Fixed
  • Okta integrations can use Okta demo tenants
  • Integration logos showing wrong logo
  • Okta app logos not showing properly
New
  • Okta groups with group rules are discouraged from being put into 'push' mode
Fixed
  • The last Admin in an organization cannot be removed. Each organization must have at least one Admin.
  • Bug with reselecting reviewer when request re-renders
New
  • Okta app group assignment included in user, team, and group access table
  • Link to Google Admin from Google integration detail page
Changed
  • Request titles for 'Create entitlement for...', 'Update entitlement for...', and 'Revoke entitlement for...' are now 'Grant access to...', 'Update access to...', and 'Revoke access to...'
New
  • Drawer to explore user attributes from an integration
Changed
  • Integration display name hidden when only there is only one integration of the same type
  • Renamed 'System Bootstrap Service Account' to 'Init Service Account'
Fixed
  • Display of secondary email
  • Search in resource picker
Changed
  • Reviewer automatically selected for requests
New
  • Okta apps show Okta group assignments
  • User profiles include secondary emails
Fixed
  • Groups list page search query persists reloading
New
  • Canonical attributes decide which integration a user's title, manager, and other shared information comes from
Changed
  • Redesign of integrations list page
  • Improved keyboard navigation in integrations list page
Fixed
  • Extended Latin accents now render correctly
  • Removed links to Okta and audit logs for non Admins
New
  • Filter resources by type (Okta group, Okta app, Google group)
  • Integration detail page shows number of attributes being synced

Slack app

The Oblique Slack app lets Oblique notify users about pending requests directly in Slack.

The Slack app sends notifications for all requests made in Oblique to a public channel. Requestors and reviewers are automatically tagged, with updates threaded and status changes reflected in real-time.

New
  • Go to profile option in command palette
Fixed
  • Faster navigation in reporting hierarchy
Deprecated
  • Administrative information removed from resource detail sidebar
New
  • App icons for Okta apps
Changed
  • Resource detail page shows whether current user has access
  • When making an access request, use current user as default subject
New
  • Group assignments for Okta apps shown on Okta app detail page
  • Okta apps assigned to group shown on Okta group detail page
Fixed
  • Requests cannot have duplicate changes
  • Deleted teams' members cannot be changed
New
  • Summary of changes and access changes in request page activity section
  • Count of apps being synced from an integration included in integration detail page
  • List of resources being synced from an integration on integration detail page
  • Attribute-based group and team group members lists show when users were added in overflow menu
Changed
  • Integration sync logs show relative time
  • Okta app assignments sync every 5 minutes
New
  • Okta apps sync as resources
  • Put Okta apps into push mode to make Oblique the source of truth for app assignments
  • Team creation requests link to the created teams once the request is applied
Changed
  • More compact access previews in entitlement requests
  • Tweaking of Google OAuth2 prompts for faster logins
  • Add members button changed to Edit members on team detail page
  • Sync time under 1 minute shows 'just now'
Fixed
  • Entitlement expiration countdown shows n days, not n-1 days
  • Grant access button removed from push resources
New
  • Summary of access changes for users and resources in a request
Fixed
  • Request reviewers and Oblique Admins can enable or disable auto-apply for a request
Changed
  • Request timeline events for the same action are grouped
Fixed
  • Bug with expiring some entitlements
New
  • Request to edit entitlements, to change expiration
  • Request to revoke entitlements
New
  • Oblique automatically closes requests that are obsolete
Changed
  • When an integration is removed, its resources are soft deleted
Deprecated
  • Obsolete requests are now 'Closed' with a comment instead of 'Obsoleted'
Fixed
  • Bug with removing users from groups

Requests

Creating an entitlement now uses the request workflow. Users can request access for themselves, another user, or an attribute-based group or team to any resource. The request can be approved by the resource owner or an Oblique Admin.

Fixed
  • Requests list page showed timestamps twice
  • Requests links opened in new tabs
New
  • Remove an integration, which stops syncing it and removes its resources from Oblique
New
  • Manually apply requests
Changed
  • Request title for single user changes include user's name
Fixed
  • Author badge also shown in owner section of team requests
  • Request subtitle shows closed time for closed requests
Changed
  • Requests are now 'Applied' instead of 'Merged'
New
  • Disable auto-merge for request
  • User, team and group profiles display what other objects they are an owner of
Changed
  • Request page layout
Deprecated
  • Parent teams, replaced by setting another team or group as a team's owner
  • Team hierarchy section
Changed
  • Any user, not just a team owner, can request removing a member from a team
  • Redesigned team hierarchy component
Changed
  • User attributes section only visible to yourself and to Oblique Admins
  • Group and team hovercards include membership information, e.g., Member
  • URL for team detail page is now /teams/* instead of /team/*
Fixed
  • Request comments appear in the audit log for request events
New
  • Changes live update
  • Groups list view shows whether a user is part of a group
  • Users can leave a group they are a member of
  • Requests appear in audit logs
Changed
  • Approved requests auto-merge
  • Requestors for team creation are automatically listed as team owners and team members
  • User hovercards and detail pages include relationship information, e.g., Manager or Peer
  • User hovercards include email copy button
Deprecated
  • Users list view
Fixed
  • Incorrect keys for Windows keyboard shortcut
  • Bug where direct team owners were unable to approve team changes
New
  • Navigate to requests from the command palette
Changed
  • Users, teams and groups no longer have a 'Management' sidebar
  • Non-Admin users can no longer see configuration information for Integrations
New
  • Filter requests by state
  • Change user to add as part of a request to join a team
New
  • See request history
New
  • Requirements listed for approving a request
  • Option to add a suggested reviewer to meet a requirement
New
  • Create a Google group for a new team, when enabled on the integration
Changed
  • Redesign of team create request
New
  • Add comment when approving a request
Changed
  • Separate Approve and Merge buttons
New
  • Merge requests after approval
  • Timeline of requests on team detail page
Changed
  • Approved requests are not immediately merged
New
  • Edit team members request
  • Badge for author of edit team members request
  • Reviewers list includes an explanation for why they can be a reviewer
Changed
  • Editing a team's members requires a request
  • Reviewers can be edited after a request is created
New
  • Select reviewers for a team create request
  • Select reviewers for a team join request
Changed
  • Requests are auto-approved when the requestor can already approve them
  • Improved picker for parent team in team create request
New
  • Request to join a team, which needs the approval of an Oblique Admin
Changed
  • Creating a team always requires a request
New
  • Requests tab shows count of open requests
Changed
  • Requests awaiting approval are now called 'Open' instead of 'Active'
New
  • Request to create a team, which needs the approval of an Oblique Admin
  • Requests page
Changed
  • Vertical redesign of group creation page
  • Vertical redesign for team creation page
  • Vertical redesign for add entitlement page
  • Vertical redesign for add integration page
New
  • Rich hovercard with detailed group information
  • Rich hovercard with detailed team information
  • Rich hovercard with detailed resource information

Google Workspace integration

Connect Oblique with Google Workspace to pull users from Google and manage Google Groups. Pull and push membership of Google groups from within Oblique.

New
  • Rich hovercard with detailed user information
  • Search for users by email
Changed
  • Improved view of reporting chain and reports
New
  • Add and remove team members as part of a single change

Preview access changes

Preview the impact of an access change as part of adding entitlements or changing team membership:

  • Which users and resources are affected, and which users remain unaffected
  • Which users gain or lose access per resource
New
  • Search for integrations
  • Open the search bar with Command + KControl + K
New
  • Integration sync logs
New
  • Rich attributes on the user profile, group detail, and integration detail pages
  • Download a csv of attributes from the integration detail page
Changed
  • By default, Oblique's appearance is set to System

Dark mode

Oblique is available in Light, Dark, and System modes. By default, Oblique respects System settings.

New
  • See list of users with indirect access to the resource from the resource detail page
  • See how a user has access (direct, indirect, or both) and via which groups or teams from the resource detail page
  • Delete direct user entitlements from the resource detail page
  • Filter resource list by the number of users with access to the resource
  • Integration detail page shows recent syncs
Changed
  • By default, the resource list is filtered by the number of users with access to the resource