For the complete documentation index, see llms.txt. This page is also available as Markdown.

Asana (Ticketing System) Integration

Connect Asana with Sprinto to automate ticket-based evidence collection, track change management, and monitor compliance workflows.

The Asana integration allows Sprinto to sync tasks (tickets), projects, and user activity to automate evidence collection for compliance frameworks such as SOC 2 and ISO 27001.

Sprinto uses this integration to:

  • Track change management through tickets

  • Monitor task lifecycle and approvals

  • Validate ownership and accountability

  • Capture audit-ready evidence automatically

Asana is connected via a third-party integration provider (MergeDev). Sprinto does not directly connect to Asana APIs.


How it works

Sprinto connects to Asana using MergeDev’s secure OAuth-based integration.

Once connected:

  1. Sprinto retrieves tasks (tickets), projects, and users from Asana

  2. Projects are mapped as collections within Sprinto

  3. Task updates, status changes, and assignments are continuously synced

  4. Workflow states are derived from:

    • Project sections (e.g., To Do, In Progress, Done)

    • Completion status (completed/not completed)

  5. Task activity (stories/changelog) is tracked for audit evidence

This enables Sprinto to automatically validate compliance requirements tied to ticketing workflows.


Use cases

Use case
Description

Change management tracking

Validate that all changes are backed by tickets

Audit evidence collection

Automatically collect task lifecycle data

Ownership validation

Ensure tasks are assigned and tracked

Workflow monitoring

Track movement across workflow stages

Access compliance

Monitor Asana access for users


Permissions and data access

Sprinto requires read and limited write access to sync tasks and validate compliance workflows.

Tickets

  • Assignees

  • Description

  • Due date

  • Status

  • Ticket type

  • Timestamps (created, updated, completed)

  • Parent relationships

  • Permissions


Users

  • Name

  • Email address

  • Avatar


Projects (Collections)

  • Name and description

  • Project hierarchy

  • Permissions

  • Timestamps


Permissions

  • Role assignments

  • Access mappings

  • Applied permissions across users, teams, and projects


Additional data processed

  • Workflow states (derived from project sections)

  • Task completion status

  • Changelog (stories) for audit tracking

Sprinto uses this data only for compliance monitoring and does not modify data unless required for ticket synchronisation.


Monitors and compliance

Sprinto enables the following monitors for Asana:

  • Sync new tickets from Asana

  • Ensure tickets are assigned

  • Track ticket approvals

  • Monitor offboarding (access removal)

Additionally:

  • Asana access is tracked separately for access reviews

  • User membership changes are monitored for compliance


Prerequisites

Before setting up the integration, ensure the following:

  • Admin or Workspace Owner access to Asana

  • Access to relevant Asana projects

  • (Optional) Enterprise or Enterprise+ plan for private ticket access

  • A service account API key (only required for service account method)


Connect Asana

Step 1: Start the integration

  1. Log in to the Sprinto dashboard.

  2. Navigate to Settings → Integrations.

  3. Search for Asana.

  4. Click Connect.

  1. In the drawer that opens up, there are two options:

    • Asana (Ticketing)

    • Asana (Access Review)

  2. Click Connect next to Asana (Ticketing).


Review permissions and data access

After selecting Asana (Ticketing), a setup drawer opens with details about controls, checks, and data access.

  1. Review the Automate evidences for section to understand:

    • Number of controls automated

    • Number of checks enabled

  2. Expand Permission & Data to review:

    • Permissions required (read access)

    • Data used by Sprinto, including:

      • Ticket details (ID, name, status, description)

      • Assignee and due date

      • Projects and collections

      • Users and tags

      • Ticket URL and metadata

  3. Review Additional information:

    • Confirms that admin access to Asana is required

  4. Click Next to proceed.


Configure and initiate connection

A second drawer appears to guide you through the integration setup.

  1. Review the setup instructions:

    • Ensure you have administrator privileges in Asana

    • Your credentials will be used to sync change management data

  2. Select the I have the admin access checkbox:

  3. Click Connect to Asana.

  4. You will be redirected to the authentication flow (OAuth or service account, depending on your selection).


Choose an authentication method

Sprinto provides two ways to connect Asana:

  • My credentials (recommended) – Connect using your Asana login

  • Service account – Connect using a centralised API key


Method 1: Connect using My credentials

  1. Select My credentials.

  2. Review the access permissions.

  3. Click Next.

  1. Click Open window.

  1. Sign in to Asana and authorise access.

Once authentication is complete, Sprinto establishes the connection and begins syncing data.


Method 2: Connect using a service account

Use this method for centralised, long-term integrations.

Steps to connect

  1. Select Service account.

  2. Review the access permissions and click Next.


Confirm access requirements

Before proceeding:

  • The service account must have access to all required projects

  • Accessing private tickets requires Asana Enterprise or Enterprise+

  • You must have super admin privileges

Click Next to continue.


Add service account API key

  1. Create a service account and generate an API key using the Asana admin and super admin setup guide.

  2. Copy the Service account API key.

  3. Paste it into Sprinto.

  4. Click Next.

Sprinto validates the key and completes the integration.


Post-connection behaviour

  • Initial sync of tasks and projects begins automatically

  • Projects are mapped as collections

  • Monitoring checks are activated

  • Continuous sync keeps data up to date


Troubleshooting

Issue
Resolution

401 Unauthorized

Reconnect the integration

403 Forbidden

Ensure admin/workspace owner access

404 Not Found

Verify project or task availability

Rate limiting

Retry after some time

Expired connection

Reconnect the integration

Additional checks:

  • Ensure the integrating user still has admin access

  • Verify project visibility and permissions


Summary

Requirement
Details

Integration type

Ticketing + Task sync

Connection method

MergeDev (OAuth or API key)

Required role

Admin or Workspace Owner

Data collected

Tasks, projects, users, workflow states

Special features

Section-based workflows, changelog tracking

Security

Tokens encrypted at rest


Support

If you have any questions or concerns during the integration process, don't hesitate to reach out to Sprinto Support via the in-app chat or write to us at Sprinto Support. We're here to help!

Last updated