Start free trial

Notion

Docs & evidenceTwo-way syncOAuth 2.0

Auditors ask for the policy and the completed review, and they ask for them where your documentation already lives. Urengi keeps a read-only mirror in the space you name, so the answer is a link rather than an export.

Category
Docs & evidence
Auth method
OAuth 2.0
Direction
Two-way
Sync frequency
Hourly
Scopes requested
3
Available on
All plans
Maintained by
Urengi

What the Notion integration does

Three jobs that keep the documentation copy from going stale.

Completed reviews mirror themselves

A signed-off review writes a page carrying the tier, the evidence list and the approver, updated in place rather than appended as a second version.

One database, always current

Every vendor is a row with its tier and next review date, so the page an auditor is sent to is the page that is true today.

Policy pages link back

Your own policy pages reference the live review rather than a paragraph someone pasted in eighteen months ago.

Exactly what Urengi can see

Three scopes on the pages you explicitly share with the integration. Notion grants nothing else.

Urengi reads

  • Titles of pages shared with Urengi
  • The vendor database's schema
  • Pages Urengi itself created

Urengi writes

  • Review pages in the shared space
  • Rows in the vendor database
  • Properties on those rows

Urengi never touches

  • Pages you did not share with the integration
  • Comments or user mentions
  • Files, images or embeds
  • Anything after you remove the connection

Connect it in four steps

One authorisation, one field mapping, and a test sync you run yourself.

01

Authorise the connection

Open Notion from this page and approve the scopes listed above — OAuth in a browser tab, or a scoped API key you paste. An admin approves them once.

02

Choose what syncs

Pick the projects, spaces or accounts Urengi should watch. Narrow is fine to start with; widening it later does not re-authorise anything.

03

Map your fields

Match owners, cost centres and tiers to what Urengi already tracks. Defaults arrive pre-filled from the first sync, so most teams change nothing.

04

Run a test sync

Pull one record and check it landed on the right review. The audit entry confirms the mapping before a real vendor is touched.

Your token, your rules.

Urengi stores the Notion token encrypted at rest under a per-tenant key and never replays it outside the scopes you approved. Revoke the app in Notion and every Urengi write stops within seconds the audit log keeps the history, the connection simply ends.

Read the security statement
SOC 2 Type II
audited annually
Per-tenant keys
no shared secrets
Revocable in Notion
one click, no ticket
EU or US residency
chosen at signup