For freely available apps on the Slack Marketplace, they can follow the instructions here.
After the request is submitted (Step 6 @ link above), the request goes to GRC. See Slack app review process below for details.
For apps being developed internally, use the installation instructions provided here. This is what Slack calls an undistributed app, meaning it's intended for a single organization or workspace and will likely never be listed on the Slack app marketplace.
Instead of Install App to Workspace these users will see Request to Install as Samsara requires admin approval. They may provide a custom message along with the request, and it will be forwarded to GRC. See Slack app review process below for details.
Once approved, they may Install App to Workspace as normal.
Common Pitfalls
Only FTE employees can submit application approval requests.
For every user installing an approved app, whether Marketplace or internal, Slack will present them with an OAuth screen that contains information on what the requested scopes allow the app to do. Although some users may hesitate to click on this, they must proceed by clicking Authenticate to enable the reviewed scopes. After this, the Slack app will be available to use.
Adding scopes to an app: Internal apps under development or even marketplace apps with new features may occasionally require new scopes. When installing the new version, it goes through the approval process like normal. Until the app is approved, only the older version will be available. Once the approval is completed and installed, the new version will work as expected.
Deactivating an app owner: When an app owner is deactivated and the app becomes unowned, it will become unavailable to the workplace. Simply have another user reinstall it if this happens.
Slack app review process
Slack apps of all types (Marketplace, internally developed, etc) must be reviewed by GRC to get approval for install. Reviews typically take 1-3 business days.
Once an app is approved, a workspace owner will record the decision in Slack, Slackbot will send the app owner (probably the requester) a message in Slack telling them to install it and providing a link to the next step.
If an app is rejected, Slackbot will send the app owner a message in Slack saying so. Internally developed apps or apps that have optional scopes can be reconfigured and resubmitted for approval.
To find out the status of a pending approval, or to ask to expedite a request for approval, please ask in the Slack channel #ask-grc.
Slack scopes have a risk rating of low, medium, or high. Apps using only low-risk scopes will be approved automatically.
Comments
0 comments
Please sign in to leave a comment.