Skip to main content
BambooHR uses OAuth 2.0 to authorize access to your HR data. When you click Connect, you’ll enter your company domain and then be redirected to BambooHR to approve the requested permissions. Access tokens are short-lived and refreshed automatically — your password is never stored.

Check prerequisites

  • You must have a BambooHR account with permission to authorize third-party integrations. A Full Admin role is recommended.

Click Connect and enter your company domain

  • Click the Connect button above.
  • In the connection form, enter your company domain. This is the subdomain before .bamboohr.com in your BambooHR URL — for example, if you log in at mycompany.bamboohr.com, enter mycompany.
  • Click Connect with OAuth. You will be redirected to BambooHR to sign in and approve the requested permissions, then redirected back to Human Intelligence.

Confirm the connection

The BambooHR tile in Integrations will show Connected. You can revoke access at any time from this page.

What we access

We request read-only access to the following categories of data:

Token security

  • Short-lived tokens: Access tokens expire after one hour and are refreshed automatically using a refresh token. Your BambooHR password is never stored.
  • Encrypted storage: Tokens are stored encrypted at rest in Google Cloud Secret Manager and never exposed to Human Intelligence staff.
  • Revocation: You can disconnect at any time from this page. BambooHR admins can also revoke access directly from BambooHR’s integrations settings.