# External Trigger

**URL:** <https://developer.sailpoint.com/discuss/t/external-trigger/192901>\
**Category:** SHF Discussion and Questions\
**Tags:** identity-security-cloud\
**Created:** [January 12, 2026, 1:03am UTC](https://developer.sailpoint.com/discuss/t/external-trigger/192901 "2026-01-12T01:03:07Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![AllIT](https://avatars.discourse-cdn.com/v4/letter/a/c89c15/32.png) [@AllIT](https://developer.sailpoint.com/discuss/u/AllIT)\
**Post date:** [January 12, 2026, 1:03am UTC](https://developer.sailpoint.com/discuss/t/external-trigger/192901/1 "2026-01-12T01:03:07Z")

</div>

Hello All,

This is for general information. Workflows that are triggered via external sources currently do not capture details about which external system initiated the trigger.

Would it be a good approach to define a mandatory field to record the external trigger details wherever an external trigger is used?  
While reviewing the workflows, I noticed that many workflows have external triggers configured but do not contain any information about the calling external system.

Thanks,  
Anirban

---

<div class="post-metadata">

**Author:** ![chaithu979](https://avatars.discourse-cdn.com/v4/letter/c/f0a364/32.png) [@chaithu979](https://developer.sailpoint.com/discuss/u/chaithu979)\
**Post date:** [January 12, 2026, 2:53am UTC](https://developer.sailpoint.com/discuss/t/external-trigger/192901/2 "2026-01-12T02:53:53Z")

</div>

Hi anibran  
**Fire and Forget** : It is a one-way communication to notify subscribers. It only sends request to subscribers and don’t wait responses from subscribers.

**Response Required Trigger** : It is a two-way communication between the trigger service and subscriber. It sends request to subscribers and wait responses from subscribers.

---

<div class="post-metadata">

**Author:** ![RAKGDS](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/rakgds/32/2795_2.png) [@RAKGDS](https://developer.sailpoint.com/discuss/u/RAKGDS)\
**Post date:** [January 12, 2026, 6:21am UTC](https://developer.sailpoint.com/discuss/t/external-trigger/192901/3 "2026-01-12T06:21:02Z")

</div>

> [@AllIT](#):
>
> Hello All,
> 
> This is for general information. Workflows that are triggered via external sources currently do not capture details about which external system initiated the trigger.
> 
> Would it be a good approach to define a mandatory field to record the external trigger details wherever an external trigger is used?  
> While reviewing the workflows, I noticed that many workflows have external triggers configured but do not contain any information about the calling external system.

Hello @Anirban,

You’ve identified an excellent point regarding external trigger documentation in workflows! This is indeed a common challenge when managing workflows at scale.

## **Current State**

You’re correct that the workflow external trigger configuration itself doesn’t enforce capturing information about the calling external system. When you create an external trigger, the API provides:

- A unique callback URL

- OAuth client credentials (client ID and client secret)

- The trigger name and description

However, there’s no **mandatory** field that documents which specific external system will use these credentials.

## **Recommended Approach**

Here are some best practices to address this:

### **1. Use Descriptive Names and Descriptions**

When creating or updating workflows with external triggers, leverage the `name` and `description` fields strategically:

### **2.Implement a Documentation Standard**

Create a governance policy that requires:

- **Trigger name** should include the source system name

- **Description** should document:

### **3. Use Workflow Variables or Comments**

Add a comment step at the beginning of workflows with external triggers that documents the integration.

### **4. Maintain an External Registry**

Consider maintaining a separate configuration management database (CMDB) or documentation system that maps:

- Workflow ID ↔ External system details

- OAuth client ID ↔ External system

- Integration owner and contact information

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [March 13, 2026, 6:21am UTC](https://developer.sailpoint.com/discuss/t/external-trigger/192901/4 "2026-03-13T06:21:24Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
