Sentry Enterprise Rbac
Prerequisites
-
Sentry Business or Enterprise plan
-
Identity provider configured (for SSO)
-
Team structure documented
-
Permission requirements defined
Instructions
-
Create teams via dashboard or API following naming conventions
-
Add members to teams with appropriate roles (admin, contributor, member)
-
Assign projects to teams based on service ownership
-
Configure SSO/SAML with identity provider settings
-
Set up SAML attribute mapping for email and optional team assignment
-
Enable SCIM provisioning for automated user management
-
Create organization API tokens with minimal required scopes
-
Implement access patterns (team-isolated, cross-team visibility, contractor)
-
Enable audit logging and review access regularly
-
Follow token hygiene practices with quarterly rotation
Output
-
Teams created with appropriate members
-
Projects assigned to teams
-
SSO/SAML configured
-
API tokens with scoped permissions
Error Handling
See ${CLAUDE_SKILL_DIR}/references/errors.md for comprehensive error handling.
Examples
See ${CLAUDE_SKILL_DIR}/references/examples.md for detailed examples.
Resources
-
Sentry Team Management
-
SSO & SAML
-
SCIM Provisioning
Overview
Configure enterprise role-based access control in Sentry.