How to create an Integrations Admin in Span

Last updated: February 20, 2026

Overview

An Integrations Admin is a user in Span who has permission to configure and manage your organization's tool integrations (GitHub, GitLab, Jira, Linear, HRIS, IdP, etc.). This guide walks you through inviting that user and granting them the appropriate access.

Step 1: Invite the User to Span

Before assigning any role, the user needs to be in your Span organization. There are several ways to provision users:

Method

Description

Manual

Navigate to Admin > People Management and click "Add Person." Make sure the Access Type field is set to "Account."

SSO (Single Sign-On)

Organizations using an identity provider (Okta, Google, etc.)

SCIM Provisioning

Automated user lifecycle management via WorkOS

Directory Sync

Syncing users directly from your HR/directory system

Work with your Span account representative to determine which provisioning method is configured for your organization. Once the user is provisioned, they will receive an invite to access Span.

Step 2: Create a Custom Integrations-Only Role

If you prefer to grant only integration management permissions (without broader admin access), you can create a custom permission group:

  1. Navigate to Settings → Permissions → Permission Groups

  2. Click Create New Role

  3. In the Setup tab, choose how members are assigned:

    • Manual — Add specific individuals by name

    • Matching — Define filters (e.g., by team)

  4. In the Global Permissions tab, enable:

    •  ManageIntegrations

  5. Configure any additional data visibility settings in the Team / People / Self tabs as needed

  6. Review your settings and click Save

The user will now have permission to add and manage integrations without access to other administrative functions.


Step 3: What the Integrations Admin Can Do

Once set up, your Integrations Admin can:

  • Add and configure integrations (GitHub, GitLab, ADO, Jira, Linear, Calendar, Incident Management, HRIS, Entra, Okta, and more)

  • Manage API credentials and authentication tokens

  • Enable or disable integrations

  • Configure sync settings and data mappings

They cannot (unless also assigned the Owner role):

  • Manage permission groups or roles

  • Access salary or cost data

  • Modify other organizational settings

Need Help?

If you're unsure which provisioning method your organization uses, or need help assigning the Admin role, reach out to your Span account representative or contact support@span.app.