---
source_url: "https://getsecureslate.com/docs/offboarding-account-deprovisioning-agent?utm_source=openai"
title: "Offboarding auto-remediation (account deprovisioning) | SecureSlate Docs"
mirrored_at: 2026-08-11T01:34:26.609Z
host: getsecureslate.com
cited_in_42a: true
mirror_canonical: "https://index.42a.ai/getsecureslate.com/docs/offboarding-account-deprovisioning-agent__q__utm_source_openai"
---

> **Original source:** https://getsecureslate.com/docs/offboarding-account-deprovisioning-agent?utm_source=openai

On this page

-   [What the agent does](#what-the-agent-does)
-   [Supported systems (examples)](#supported-systems-examples)
-   [Run auto-remediation](#run-auto-remediation)
-   [From User Access (built-in system)](#from-user-access-built-in-system)
-   [From a failing test](#from-a-failing-test)
-   [Review and approve](#review-and-approve)
-   [Common policies you can enforce](#common-policies-you-can-enforce)
-   [Related documentation](#related-documentation)

Agent

The **Offboarding** agent helps you keep access clean and audit-ready by automatically **deprovisioning accounts when personnel leave**. It watches your HR system or Identity Provider (IdP) for termination events, then disables or removes access across connected tools so former team members do not retain access.

## What the agent does

When an offboarding event is detected, the SecureSlate agent can:

1.  **Detect the event** from an HR system (for example Workday or BambooHR) or an IdP directory change.
2.  **Identify the person** across connected systems (email, username, external IDs).
3.  **Disable access** (suspend, remove from groups, revoke sessions/tokens).
4.  **Deprovision accounts** in connected platforms (where supported).
5.  **Collect evidence** of actions taken (time, actor, systems updated).
6.  **Open a ticket** when manual steps or approvals are required.

## Supported systems (examples)

This workflow is commonly used to deprovision:

-   **Password manager**: 1Password
-   **IdP / directory**: Auth0, Google Workspace
-   **Source control / CI**: GitHub, GitLab, Bitbucket
-   **Collaboration**: Slack, Jira
-   **Project tracking**: ClickUp, Linear
-   **Edge/security**: Cloudflare

You can launch offboarding remediation from **User Access** (for inactive accounts) or from a failing access or offboarding test.

### From User Access (built-in system)

1.  Go to **User Access → Account**.
2.  Click the **Inactive** issue badge, or click **Auto Fix** on the **SecureSlate AI can fix this** banner.
3.  Review the systems the agent plans to update (and any required approvals).

### From a failing test

1.  Open the failing access or offboarding test.
2.  On the **SecureSlate AI can fix this** card, click **Auto Fix**.
3.  Review the systems the agent plans to update (and any required approvals).

## Review and approve

Before changes are applied, you can review:

-   **Accounts found** per system (matched identities)
-   **Actions planned** (suspend vs remove vs token revoke)
-   **Exceptions** (contractors, shared accounts, service accounts)

Then choose:

-   **Approve** — The agent executes the deprovisioning plan and logs evidence.
-   **Reject** — Close without making changes.

## Common policies you can enforce

-   **Immediate suspension** on termination events
-   **Grace period** for end-of-contract dates (optional)
-   **Service account exemptions** with ticketed justification
-   **Break-glass accounts** excluded but continuously monitored

-   [Access Reviews](https://getsecureslate.com/docs/access-reviews)
-   [Access review auto-remediation](https://getsecureslate.com/docs/access-review-auto-remediation-agent-workflow)
-   [Connecting SecureSlate and Auth0](https://getsecureslate.com/docs/connecting-secureslate-and-auth0)
-   [Connecting SecureSlate and Google Workspace](https://getsecureslate.com/docs/connecting-secureslate-and-google-workspace)
-   [Connecting SecureSlate and 1Password](https://getsecureslate.com/docs/connecting-secureslate-and-1password)
-   [User management](https://getsecureslate.com/docs/user-management)