Home / Companies / WorkOS / Blog / Post Details
Content Deep Dive

What shipping an OAuth app on Slack, Microsoft, and Atlassian actually takes

Blog post from WorkOS

Post Details
Company
Date Published
Author
Conner Simmons
Word Count
2,500
Company Posts That Month
81
Language
English
Hacker News Points
-
Post removed?
No
Summary

OAuth implementation is usually predictable, but production launches for integrations with Slack, Microsoft, Atlassian, and Google are often delayed by provider-controlled approval processes, organizational verification, and recurring compliance requirements. Slack requires marketplace applicants to have at least five active workspace installs before submission, scrutinizes listings, scopes, and test access, and can take up to 10 weeks for functional review, with later changes to scopes or features requiring re-review. Microsoft’s primary hurdle is publisher verification, which depends on a verified partner account, eligible Entra registration, domain ownership, and authorized organizational roles, although the final verification can be quick once this groundwork is complete. Atlassian requires business and identity verification, privacy and security approvals, and app review, while enforcing authentication and trademark rules and requiring renewed approval for certain major changes. Google adds the most persistent burden for apps using restricted scopes through security assessments that may take about six weeks and must be repeated annually. The discussion argues that teams should plan approval windows, scope decisions, customer pilots, legal documentation, and partner-account setup alongside engineering work; it also presents WorkOS Pipes and Relay as tools that can simplify OAuth development, testing, token handling, and secure API access but cannot bypass providers’ production approval requirements.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.