The Freshteam integration enables security and compliance teams to automatically track employee lifecycle events. It connects Drata to Freshteam so your team can collect evidence related to employee hire dates, separation dates, and employment status.
Key Capabilities
Employee lifecycle data: Hire dates and termination dates
Employment status tracking: Active or inactive employee records
Automated evidence collection: HRIS data used for compliance verification
This integration is used to automate tests such as employee offboarding verification and employee roster validation, helping prove compliance with access control and personnel security policies.
Prerequisites & Data Access
Admin access to your organization’s Freshteam account
Required Drata Role with Write access: Admin, Workspace Managers, DevOps Engineer
Access Reviewers (Access Reviewers can only read the connection page; they cannot make changes)
Permissions & Data Table
Permission/Scope | Why It’s Needed |
Freshteam API Key | Allows Drata to authenticate and retrieve employee lifecycle data such as hire date, separation date, and employment status |
Freshteam Subdomain | Identifies the correct Freshteam instance for your organization |
Step-by-Step Setup
Step 1: Find Your Freshteam Subdomain
Log in to your Freshteam account.
Locate the URL in your browser.
Identify the prefix between
https://and.freshteam.com.Copy this value.
Example:
If your URL is https://companyname.freshteam.com, the subdomain is companyname.
Expected outcome: You have the Freshteam subdomain required for authentication.
Step 2: Retrieve Your Freshteam API Key
Log in to Freshteam.
Hover over your profile image in the top-right corner of any page.
Select API Key from the dropdown menu.
Copy the API key.
Expected outcome: You have copied the Freshteam API key required for the connection.
Step 3: Connect Freshteam in Drata
Log in to Drata → go to the Connections page.
Navigate to your Available Connections.
Search for and start the Freshteam connection process.
Enter your Freshteam subdomain and API Key when prompted.
Expected outcome:
Freshteam is successfully connected and employee lifecycle data begins syncing to Drata.
Important Notes
Important notes: This integration collects employee lifecycle metadata such as hire dates, separation dates, and employment status for compliance evidence.
Principle of least privilege: Authentication is performed using a Freshteam API key associated with your account.
Edge cases: If the API key is rotated or revoked in Freshteam, the integration may disconnect and require reauthentication.
