Govern identities and access in SailPoint Identity Security Cloud
SailPoint is a Security integration for Sim, the AI workspace where teams build and deploy AI agents. Sim's SailPoint integration provides 40 SailPoint tools that AI agents can use inside Sim's visual workflow builder. SailPoint connects with an API key. Free to start at sim.ai.
Last updated
Read and act on identity-governance data in SailPoint Identity Security Cloud (ISC) with a Personal Access Token (PAT) exchanged through OAuth2 client credentials at https://TENANT.api.identitynow.com/oauth/token. SailPoint versions each service independently, so the integration uses current service paths such as /search/v1, /identities/v1, and /access-requests/v1; there is no shared annual API-version setting. Use a PAT whose owner has the ISC user level required by each endpoint because many identity, role, access-profile, certification, approval, and access-request operations require user context in addition to scopes. Common read scopes include sp:search:read, idn:identity:read, idn:accounts:read, idn:entitlement:read, idn:role-unchecked:read or idn:role-checked:read, idn:access-profile:read, idn:sources:read, idn:campaign:read, idn:access-request-status:read, idn:access-request-config:read, idn:task-management:read, and idn:access-request-approvals:read. Mutations additionally use idn:sources:manage for account aggregation, idn:entitlement:manage for entitlement aggregation and entitlement request configuration, idn:campaign:manage for certification decisions and sign-off, the access-request scopes listed by SailPoint for request submission, idn:access-request:create for account-selection discovery, and idn:access-request-approvals:manage for approval actions. A scope alone does not grant authority beyond the PAT owner's ISC permissions, and authorization failures may be returned as provider errors or filtered visibility depending on the endpoint and tenant policy.
Sign up at sim.ai in seconds. No credit card required. Your workspace is ready immediately.
Open your workspace, drag a SailPoint block onto the workflow builder, and paste in your SailPoint API key.
Pick the tool you need, wire in an AI agent for reasoning or data transformation, and run. Your SailPoint automation is live.
Ready-to-use templates featuring SailPoint. Click any to build it instantly.
40 SailPoint tools available in Sim
Search
Search current SailPoint indices with every documented search query mode.
Search Count
Count documents matching a complete SailPoint search body.
Search Aggregate
Run an Elasticsearch DSL or SailPoint aggregation over current search indices.
List Identities
List identities with documented filtering, sorting, and pagination.
Get Identity
Get an identity from the current /identities/v1 service by ID.
List Accounts
List accounts with documented filtering, sorting, detail, and pagination.
Get Account
Get an account from the current /accounts/v1 service by ID.
Get Account Entitlements
List entitlements granted to one account.
Get Account Selections
Resolve eligible source accounts before submitting a machine or multi-account access request.
List Entitlements
List entitlements with current segmentation, cursor, filter, and page controls.
Get Entitlement
Get an entitlement by ID.
Get Entitlement Request Config
Get grant, revocation, duration, approval, and form settings for an entitlement.
List Identity Entitlements
List tagged entitlement references held by one identity.
List Roles
List roles with current visibility, segmentation, filtering, and pagination controls.
Get Role
Get a role by ID.
Get Role Entitlements
List entitlements in one role using the current non-experimental roles service.
List Access Profiles
List access profiles with current visibility and segmentation controls.
Get Access Profile
Get an access profile by ID.
Get Access Profile Entitlements
List entitlements in one access profile.
Get Access Request Config
Get tenant access-request, request-on-behalf-of, and machine-identity configuration.
List Sources
List identity sources with visibility, filtering, sorting, and pagination controls.
Get Source
Get an identity source by ID.
List Account Activities
List provisioning activities with identity, filter, sort, and page controls.
Get Account Activity
Get an account activity by ID.
List Campaigns
List certification campaigns with detail, filtering, sorting, and pagination.
Get Campaign
Get a certification campaign by ID.
List Certifications
List identity certifications assigned to a reviewer.
Get Certification
Get an identity certification by ID.
List Certification Review Items
List access-review items in one identity certification.
Decide Certification Review Items
Approve or revoke 1-250 review items in an identity certification.
Sign Off Certification
Sign off a completed identity certification.
Request Access
Submit a current human or machine identity access request.
Cancel Access Request
Cancel an access request that has not passed approval.
Get Access Request Status
List requested-item status records for access requests.
List Pending Access Request Approvals
List pending access-request approvals visible to the caller.
Approve Access Request
Approve one pending access-request approval.
Reject Access Request
Reject one pending access-request approval with a reviewer comment.
Load Accounts (CSV)
Start account aggregation for a source, optionally using a CSV file.
Load Entitlements (CSV)
Start entitlement aggregation for a source, optionally using a CSV file.
Get Task Status
Get the current status of a SailPoint background task by ID.
Sim's SailPoint integration adds 40 SailPoint tools to the AI agents you build in Sim's visual workflow builder — you build it all visually. Govern identities and access in SailPoint Identity Security Cloud. Teams often pair SailPoint with Affinity and Smartlead in the same agent.

Build your first AI agent with SailPoint in minutes. Connect to every tool your team uses. Free to start, no credit card required.