/ /

Osano/Vanta Integration

Updated 4 months ago

Set Up the Vanta–Osano Integration

In Vanta

  1. Log in to your Vanta dashboard.

  2. Go to Settings > Developer Console and click + Create.

  3. Enter a name (e.g., Osano Integration) and description.

  4. Under App type, select Manage Vanta.

  5. Click Create.

  6. Click Generate client secret.

  7. Copy and save the Client ID and Client Secret.

In Osano

  1. Log in to your Osano dashboard.

  2. Navigate to Integrations > Available.

  3. On the Vanta Management card, click Connect.

  4. In the Connect modal, paste the Client ID and Client Secret you copied from Vanta.

  5. Click Save.

  6. In the Additional Configuration modal, choose any controls for which you’d like to regularly send evidence (Consents, Requests, or Data Stores).

  7. Click Save.

    Note: By default, the following controls are pre-selected for sending Consent evidence to – Marketing and advertising use, Consent obtained, Modify or withdraw consent. Additionally, the following controls are pre-selected for sending Requests evidence to – Data Subject Rights, Object to PII processing, Modify or withdraw consent, Access, correction, and/or erasure, Handling DSAR requests.image.png

How does it work once set up?

For each category selected (Consents, Requests, or Data Stores), Osano will generate a CSV file containing evidence from the previous 30 days.

  • Example: If the integration is established on September 12, 2025, evidence will be sent immediately for the period August 12, 2025 – September 12, 2025.

  • Each selected control in Vanta will receive the corresponding evidence file.

How it appears in Vanta:

  • The evidence is uploaded as a document assigned to the chosen control.

  • For instance, if you map Consents to the “Consent obtained” control in Vanta, the CSV file with that evidence will appear under that control.

image.png

  • Clicking on the document 'Osano Consents CSV Document' within Vanta will display the following:

image.png

Evidence Expiration and Renewal

  • Each evidence file remains valid for 30 days from the date it was generated.

  • Example: If the integration is established on September 12, 2025, the first evidence file will expire on October 12, 2025.

  • When the document expires, Osano will automatically generate a new document showing evidence from the preceding 30 days (e.g., September 12 – October 12, 2025) and attach it to the designated control in Vanta.

This ensures that evidence of consents, request fulfillment, or data inventory updates is always up to date in Vanta and automatically assigned to your selected controls.

What direct evidence is included in the generated files?

  • Consents – Consents within the last month

  • Requests – Requests within the last month

  • Data Stores – Active data stores at the date & time evidence is generated

Was this article helpful?
Subscribe to receive updates on this article