- Overview
- How to connect
- Automated checks
- Useful links
DSALTA connects to Nebius AI Cloud using read-only IAM access to collect compliance evidence automatically. Data feeds into your Data Library modules.
Read-only access. DSALTA never modifies, creates, or deletes resources in your Nebius tenant. The connection uses a Nebius service account to read tenant user accounts and inventory for identity, access, and asset monitoring.
DSALTA collects this integration’s data when you connect it — you can refresh it at any time with Sync from integrations on the Integrations page. The compliance checks below re-run once a day at 02:00 America/New_York.
What DSALTA reads
DSALTA reads the Nebius user roster — names, email addresses, active status and creation dates, which appears on your Access page; and your Nebius resources, which appear on your Inventory page. Nebius does not expose a per-user role to this integration, so every member is listed as a User.It calls these Nebius endpoints:gRPC via @nebius/js-sdk against https://iam.api.nebius.cloud: TenantUserAccountService, TenantUserAccountWithAttributesService, ProjectService, ServiceAccountService, AccessKeyService, InstanceService, DiskService, NetworkService, BucketService, ClusterService
admins or editors group (needed to read tenant user accounts), plus auditor or viewer on each project (needed to read that project’s inventory and service accounts). Nebius grants access through roles assigned to a tenant, a project or a single resource.Every request is a read. DSALTA has no code path that creates, modifies, or deletes anything in your Nebius environment.Troubleshooting
Integration shows Disconnected
Integration shows Disconnected
There is no Reconnect button. Open Integrations → Connected, click Manage on the Nebius card, and check the Status tab — it shows either Connected and working properly or Connection issues detected. To restore a broken connection you must Disconnect and connect again, which permanently deletes the data and tests collected from Nebius. This usually happens if the authorized key was removed from the service account in the Nebius Console, or the service account was deleted or dropped from the admins/editors group. Re-upload the key or restore the group membership, then reconnect.
Data is not syncing
Data is not syncing
Confirm the service account is still in the tenant admins or editors group — a
viewer or auditor cannot read tenant user accounts. Verify the Tenant ID, Service account ID, and Public key ID are correct and that the public key is still present as an authorized key, then click Sync from integrations on the Integrations page (Connected tab) — it refreshes every connected integration at once..png?fit=max&auto=format&n=tsMQJyneJ1xquFUo&q=85&s=4d401cc03b547d99b6f75a6bd170c334)