Manage access to the Slack MCP server through your identity provider

The Slack Model Context Protocol (MCP) server allows AI assistants to establish secure connections to Slack so they can access and interact with your organization’s data. If you’re on the Slack Enterprise+ plan and use Okta as your identity provider (IDP), you can manage access to the Slack MCP server in Claude from Okta.

Note: Okta is currently the only identity provider that supports Enterprise-Managed Authorization for MCP servers in Claude, but others may offer this functionality in the future. Head to the Anthropic Help Center for more details.


How it works

  • You can use Enterprise-Managed Authorization (EMA) to provision access to the Slack MCP server in Claude if you’re on the Slack Enterprise+ plan and the Claude Team or Enterprise plan.
  • To follow the setup steps in this guide, you’ll need an Org Owner in Slack, a SuperAdmin in Okta, and an Owner in Claude.
  • When you manage access to Slack (or other MCP servers) through your IDP, you can ensure that members of your organization only authenticate with their work accounts.


Step 1: Install the Claude app to Slack

Skip ahead to Step 2 if you’re already installed the Claude app at the org level.

  1. From your desktop, click your organization name in the sidebar.
  2. Hover over Tools & settings, then click Organization settings.
  3. From the left sidebar, click   Integrations
  4. Click Manage Apps in the top right, then select Install an app
  5. Search for Claude and click Continue, then click Allow to grant the app access to your org. 
  6. Now that you’ve granted the app access to your org, you’ll be prompted to return to the admin dashboard to add the app to workspaces (if you only want members of certain workspaces to have access to Claude in Slack).
  7. From the   Integrations section of the admin dashboard, click Installed apps
  8. Click the   three dots icon next to Claude. 
  9. Select Add to more workspaces
  10. Check the boxes next to any workspaces you’d like to add the app to. 
  11. Click Next
  12. Check the box next to I’m ready to add this app. 
  13. Click Add App.


Step 2: Enable Enterprise-Managed Authorization in Slack

Once the Claude app is installed, turn on Enterprise-Managed Authorization in Slack. 

  1. From your desktop, click your organization name in the sidebar.
  2. Hover over Tools & settings, then click Organization settings.
  3. Click   Security in the left sidebar, then select SSO settings
  4. Next to Enterprise-Managed Authorization, click Edit
  5. Click the toggle to enable Enterprise-Managed Authorization. 
  6. Review your ID-JAG issuer URL (ex. https://acmeinc.okta.com) and verify that it’s correct. 
  7. Click Save.


Step 3: Enable Enterprise-Managed Authorization in Okta

Next, enable Enterprise-Managed Authorization in Okta. If you’re not a Super Admin in Okta, you’ll need their help for this step.


Step 4: Enable Enterprise-Managed Authorization in Claude

To finish setup, enable Enterprise-Managed Authorization in Claude for the Slack connector.

Who can use this feature?

  • Org Owners
  • Available on the Enterprise+ plan