Skip to main content
C1 provides identity governance for PlanetScale. Integrate your PlanetScale organization with C1 for unified visibility and governance over user access.

Capabilities

Gather PlanetScale credentials

Create the service token as an organization administrator so it can be granted organization-wide read access. The connector is read-only and needs the read_organization access grant.
1
In PlanetScale, open Organization settings > Service tokens.
2
Create a service token. PlanetScale shows a token ID and a token value — copy both. The value is shown only once.
3
Grant the service token the read_organization access on the organizations you want C1 to govern.
4
Combine the two halves into a single colon-joined string, <token-id>:<token-value>. This is the value you enter for the service token field below.

Configuration fields

Synced resource types

  • Organizations: every organization the service token can reach. The member and admin organization roles are modeled as entitlements on the organization.
  • Users: organization members, projected as user principals.
  • Teams: organization teams, with team membership as grants.

Special notes

  • Provisioning is not supported in the current build; the connector is read-only.
  • The service token’s organization access determines what is synced. A token scoped to one organization syncs that organization; a token with access to several syncs all of them.

Configure the PlanetScale connector

Follow these instructions to use a built-in, no-code connector hosted by C1.
1
In C1, navigate to Apps > Connectors and click Add connector.
2
Search for PlanetScale and click Add.
3
Choose where to add the connector: Create a new app, or Add to an existing app (then select the app).If you’re creating a new app, choose whether to link it to an application discovered from your identity provider: select Yes and pick the IdP application, or No to continue with just the connector.
4
Set the connector’s Name and, optionally, a Description.
5
Click the pencil icon next to Owners to choose who can configure and manage this connector.
6
Click Add. The connector is created and its configuration page opens.
7
Find the Settings area of the page and click Edit.
8
Enter the PlanetScale credentials:
  • Service token (id:token): The colon-joined <token-id>:<token-value> pair.
  • API URL: https://api.planetscale.com (or your proxy/sovereign host).
9
Click Save.
10
The connector’s label changes to Syncing, followed by Connected. You can view the logs to ensure that information is syncing.
Done. Your PlanetScale connector is now pulling access data into C1.