Drata integration

Compliance automation: controls, frameworks, policies, personnel, risks, evidence, vendors, assets

Help CentreConnectors

Overview

Drata is a compliance automation platform. The Automize connector is read-only: it lists and reads the objects Drata maintains — controls, frameworks, policies, personnel, risks, evidence, monitoring tests, audits, vendors and assets — so a process can pull the current compliance picture into a report, a register or a queue.


Setting up the connection

Auth type: Bearer Token.

  1. In Drata, go to Settings → API Keys and create a key.
  2. Copy it there and then — Drata shows the value once, at creation.
  3. Scope it to the endpoints the process needs. Every action this connector publishes is a read, so a read-only key is enough.
  4. In Automize, open Settings → Connectors → Drata → Add connection and paste the key. It is stored encrypted and sent as a bearer token.

Available operations

15 operations available. Click any row to jump to its detail.

OperationCategoryWhat it does
Get AssetGeneralGet a single asset by its ID
Get ControlGeneralGet a single control by its ID
Get PersonnelGeneralGet a single personnel record by its ID
List AssetsGeneralList tracked assets
List AuditsGeneralList audits and their status
List ControlsGeneralList all controls in the workspace
List Evidence LibraryGeneralList entries in the evidence library
List FrameworksGeneralList the compliance frameworks the workspace is monitored against
List Monitoring TestsGeneralList continuous-monitoring tests and their pass/fail state
List PersonnelGeneralList personnel records and their onboarding/compliance state
List PoliciesGeneralList policies and their approval/renewal state
List RisksGeneralList risks from the risk register
List TasksGeneralList compliance tasks
List UsersGeneralList Drata users and their roles
List VendorsGeneralList vendors under third-party risk management

Operations

Get Asset

Get a single asset by its ID

ParameterRequiredTypeDescription
Asset ID assetIdYesstring

Get Control

Get a single control by its ID

ParameterRequiredTypeDescription
Control ID controlIdYesstring

Get Personnel

Get a single personnel record by its ID

ParameterRequiredTypeDescription
Personnel ID personnelIdYesstring

List Assets

List tracked assets

No input parameters.


List Audits

List audits and their status

No input parameters.


List Controls

List all controls in the workspace

No input parameters.


List Evidence Library

List entries in the evidence library

No input parameters.


List Frameworks

List the compliance frameworks the workspace is monitored against

No input parameters.


List Monitoring Tests

List continuous-monitoring tests and their pass/fail state

No input parameters.


List Personnel

List personnel records and their onboarding/compliance state

No input parameters.


List Policies

List policies and their approval/renewal state

No input parameters.


List Risks

List risks from the risk register

No input parameters.


List Tasks

List compliance tasks

No input parameters.


List Users

List Drata users and their roles

No input parameters.


List Vendors

List vendors under third-party risk management

No input parameters.


FAQ

Can this connector change anything in Drata?
No. Every published action is a read. Use it to pull state into Automize — a control register, an evidence chase-list, an offboarding check — and keep the writes in Drata.

Related connectors

See it working on your own data

Everything documented here ships with the platform – try the document tools free, or go live in 7 days.