> ## Documentation Index
> Fetch the complete documentation index at: https://www.osohq.com/docs/llms.txt
> Use this file to discover all available pages before exploring further.

# Identity Sync

> Sync users and groups from your identity provider so policies can scope to who's using an agent, not just which tool.

Identity Sync pulls users, groups, and group membership from your identity provider into Oso, so a policy can scope to a specific person or group instead of (or alongside) a tool, integration, or agent.

## Supported providers

Okta is supported today. See [Okta](/docs/okta) to connect your organization.

## Using synced identity in a policy

Once connected, users and groups become available as a condition when [writing a policy](/docs/oso-for-agents/policies) - for example, alerting on any tool call from someone in your Engineering group, or blocking writes from a specific person. Changes to group membership in your identity provider take effect the next time Oso syncs, which can take a few minutes.
