Okta MCP Server (Fctr Identity)

Okta management and risk assessment capabilities for AI-powered administration workflows.

Data last scanned today · Reviewed today

3220 tools38PythonApache-2.0

Overview

The Okta MCP Server provides an interface for AI models to query and analyze Okta identity resources. It is designed to assist IAM engineers and administrators by automating complex lookups such as user access verification and login risk assessment through direct integration with the Okta environment.

Our verdict

With a security score of 32/100, this server is classified as high risk. The implementation lacks read-only mode, meaning every installation is granted full write access, and it relies on bearer token authentication without OAuth support. Given its community-maintained status and the lack of an independent editorial review, this tool is best suited for isolated, non-production sandbox environments.

  • Reduces manual administrative lookup time for access policies.
  • Provides behavioral login analysis tools.
  • Zero direct dependencies minimize supply-chain surface area.
  • Includes documentation for setup and usage.
  • Full write access granted on every installation.
  • Lacks OAuth support for granular permission scoping.
  • Community-maintained project with limited bus factor.
  • Last commit activity occurred over three months ago.

Tools

ToolDescriptionRisk
analyze_user_app_accessComplete user application access evaluation with policy analysis.low
analyze_login_riskComprehensive login behavior analysis with VPN/Tor detection and geographic impossibility checks.low
list_okta_usersRetrieve users with filtering, search, and pagination options.low
get_okta_userGet detailed information about a specific user by ID or login.low
list_okta_user_groupsList all groups that a specific user belongs to.low
list_okta_user_applicationsList all application links (assigned applications) for a specific user.low
list_okta_user_factorsList all authentication factors enrolled for a specific user.low
list_okta_groupsRetrieve groups with filtering, search, and pagination options.low
get_okta_groupGet detailed information about a specific group.low
list_okta_group_membersList all members of a specific group.low

Compatibility

ClientLocalDockerRemoteRead-only
ChatGPT
Claude Desktop
Cursor
VS Code
Windsurf

Frequently asked questions

What authentication methods does the server support?

The server supports JWT bearer token authentication and includes support for enterprise authentication flows and scope-based access.

Are CLI clients supported in the current version?

No, CLI clients and AI sampling features have been moved to an archived folder due to dependency conflicts and security vulnerabilities.

Is the SSE transport still supported?

Server-Sent Events (SSE) transport is considered deprecated in this version.

What is the recommended transport method?

Standard I/O (STDIO) is the recommended transport method for this server.

Does this server offer specific tools for security analysis?

Yes, it includes specialized tools for comprehensive access analysis and advanced login risk assessment, including VPN/Tor detection and geographic impossibility checks.

Badge

Okta MCP Server (Fctr Identity) security score, rated on RepoAI

Maintain this server? Add the live badge to your README.