MongoDB Atlas federation, identity providers, LDAP, X.509, database users and roles, encryption at rest, auditing, and organization resource policies. Generated from MongoDB's hash-locked official Atlas Admin API v2 OpenAPI 3.0.1 snapshot (5040b0d3973e…) and carries 51 of the suite's 429 nondeprecated operations. Calls are fixed to cloud.mongodb.com and preserve each operation's exact versioned Accept and Content-Type media types. Use a MongoDB Atlas bearer connection containing a current OAuth2 service-account access token; the documented token lifetime is one hour, and this pack does not claim automatic client-credential exchange. Legacy Digest API keys are deliberately unsupported. JSON bodies remain verbatim, unsafe response integers remain exact strings, downloads become private file_refs, reads are uncached and not approval-gated, and every mutation requires approval. No infrastructure tenancy container is misrepresented as a task, note, or user-work project Source.
What this pack installs
- mongodb-atlas-identity-governance Ingredient
Trust & control
What installing this whole pack would let it do. Recued grants these permissions at install — review them there before approving.
What it's allowed to do
Destructive
Web APIs
mongodb-atlas-identity-governance
external change
Destructive: federated_authentication.delete_federation_setting · Always asksRead: federated_authentication.list_federation_setting_connected_org_configs · No approvalRead: federated_authentication.get_federation_setting_connected_org_config · No approvalAdmin: federated_authentication.update_federation_setting_connected_org_config · Always asksDestructive: federated_authentication.remove_federation_setting_connected_org_config · Always asksRead: federated_authentication.list_federation_setting_connected_org_config_role_mappings · No approvalAdmin: federated_authentication.create_federation_setting_connected_org_config_role_mapping · Always asksRead: federated_authentication.get_federation_setting_connected_org_config_role_mapping · No approvalAdmin: federated_authentication.update_federation_setting_connected_org_config_role_mapping · Always asksDestructive: federated_authentication.delete_federation_setting_connected_org_config_role_mapping · Always asksRead: federated_authentication.list_federation_setting_identity_providers · No approvalAdmin: federated_authentication.create_federation_setting_identity_provider · Always asksRead: federated_authentication.get_federation_setting_identity_provider · No approvalAdmin: federated_authentication.update_federation_setting_identity_provider · Always asksDestructive: federated_authentication.delete_federation_setting_identity_provider · Always asksDestructive: federated_authentication.revoke_federation_setting_identity_provider_jwks · Always asksRead: federated_authentication.get_federation_setting_identity_provider_metadata · No approvalRead: auditing.get_group_audit_log · No approvalDestructive: auditing.update_group_audit_log · Always asksRead: custom_database_roles.list_group_custom_db_role_roles · No approvalAdmin: custom_database_roles.create_group_custom_db_role_role · Always asksRead: custom_database_roles.get_group_custom_db_role_role · No approvalAdmin: custom_database_roles.update_group_custom_db_role_role · Always asksDestructive: custom_database_roles.delete_group_custom_db_role_role · Always asksRead: database_users.list_group_database_users · No approvalAdmin: database_users.create_group_database_user · Always asksRead: database_users.get_group_database_user · No approvalDestructive: database_users.update_group_database_user · Always asksDestructive: database_users.delete_group_database_user · Always asksRead: x_509_authentication.list_group_database_user_certs · No approvalAdmin: x_509_authentication.create_group_database_user_cert · Always asksRead: encryption_at_rest_using_customer_key_management.get_group_encryption_at_rest · No approvalDestructive: encryption_at_rest_using_customer_key_management.update_group_encryption_at_rest · Always asksRead: encryption_at_rest_using_customer_key_management.list_group_encryption_at_rest_private_endpoints · No approvalAdmin: encryption_at_rest_using_customer_key_management.create_group_encryption_at_rest_private_endpoint · Always asksRead: encryption_at_rest_using_customer_key_management.get_group_encryption_at_rest_private_endpoint · No approvalDestructive: encryption_at_rest_using_customer_key_management.request_group_encryption_at_rest_private_endpoint_deletion · Always asksRead: ldap_configuration.get_group_user_security · No approvalDestructive: ldap_configuration.update_group_user_security · Always asksDestructive: x_509_authentication.disable_group_user_security_customer_x509 · Always asksDestructive: ldap_configuration.delete_group_user_security_ldap_user_to_dn_mapping · Always asksRead: ldap_configuration.verify_group_user_security_ldap · No approvalRead: ldap_configuration.get_group_user_security_ldap_verify · No approvalRead: federated_authentication.get_org_federation_settings · No approvalRead: resource_policies.get_org_non_compliant_resources · No approvalRead: resource_policies.list_org_resource_policies · No approvalAdmin: resource_policies.create_org_resource_policy · Always asksRead: resource_policies.get_org_resource_policy · No approvalAdmin: resource_policies.update_org_resource_policy · Always asksDestructive: resource_policies.delete_org_resource_policy · Always asksRead: resource_policies.validate_org_resource_policies · No approval
Data it touches
SurfacesWeb APIs
Tags
pack:mongodb-atlasmongodb-atlasdatabase-platformidentitydatabase-accessencryptiongovernanceapicomposition