Connect Figma to Black Cat SSPM
Connect your Figma organization so Black Cat can review webhooks, token hygiene and activity such as role and permission changes.
≈ 5 min · audit access · no write-capable permission
What Black Cat reads, and why
| Permission | What it lets Black Cat do | Status |
|---|---|---|
current_user:read | Lets Black Cat confirm the account it is connected as and whether that account is organization-scoped. | Required |
webhooks:read | Lets Black Cat review webhooks, their destinations and whether they are protected by a passcode. | Required |
org:activity_log_read | Lets Black Cat see organization activity such as member role and permission changes. | Optional |
org:developer_log_read | Lets Black Cat see how recently each access token was used. | Optional |
What you'll need
- Personal API token Required — Created in your Figma account settings, under personal access tokens.
- Organization identifier — Optional — needed for organization-wide activity; shown in the address bar of your Figma admin settings.