Your identity layer: the users, groups, applications, and activity logs of your own Okta org.
- List and get users, groups, and applications in your Okta org, including which applications a group is assigned
- Pull system activity and authentication records from the System Log (read-only)
- Manage group membership, such as adding a user to the group that assigns an application, with confirmation prompts on destructive operations
- Tools load at server startup based on the OAuth 2.0 scopes you grant, following least privilege
- Self-hosted local server with OAuth 2.0 Device Authorization Grant or browserless Private Key JWT auth