For setup instructions on connecting your HRIS, see HRIS Integrations.
How It Works
Ensuring All Attributes Are Available
For auto-assignment rules to work effectively, AccessOwl needs access to your employees’ attributes from your HRIS. The more attributes available, the more flexibility you have when designing your templates. Most attributes like Department, Role, and Location are available by default. However, Employment Type is an attribute we recommend having for all employees, as it allows you to build a reliable baseline template that applies to everyone. If Employment Type (or other attributes) are missing for your employees, it is usually because the HRIS connection was set up with an older, more limited set of permissions. Re-connecting your HRIS resolves this in most cases.Some HRIS providers may not support certain attributes. For example, if you are using Okta as your HRIS source, some fields may not be available regardless of the connection. Reach out to our team if you are unsure what is available for your setup.
How to Re-authenticate Your HRIS
- Go to Settings → General → Directory Integrations.
- Click on your HRIS integration.
- Click Edit.
- Follow the steps to re-authenticate.
Best Practices for Zero Touch Onboarding
Keep it simple: Baseline + Department + Role (Optional) + Location (Optional) A new hire can match multiple Access Templates at once. Each template contributes its own applications and permissions.1. Baseline template (Everyone)
Use one default template for tools every employee needs on day one.
Use the “Employment Type” attribute with the Is set operator to apply this template to every employee with an active employment status.
2. Department templates
Department templates cover shared tools most people in that department need.3. Role templates (Optional)
Role templates are for extra tools or permissions only certain roles need. Add these only when a subset of a department needs additional access.4. Location templates (Optional)
Location templates handle office-specific tools or access.Example Auto-Assignment Setup
For a full reference on supported attributes, rule conditions, attribute priority, and the simulator, see Access Templates.
FAQ
Can I still onboard manually?
Can I still onboard manually?
Yes. Zero Touch Onboarding is optional. You can continue to onboard manually via Slack or the web interface. Auto-assignment only applies to HRIS-triggered onboardings.
What happens if an HRIS attribute is missing?
What happens if an HRIS attribute is missing?
If a required attribute is empty or not provided by your HRIS, the condition will not match. The template will not be assigned automatically, but can still be selected manually.

