NIM Apps
NIM Apps
Build secure, self-service web experiences that let the right people complete identity tasks without helpdesk intervention.
Use NIM Apps to build secure self-service forms for account management, access requests, onboarding, password reset, and other controlled identity workflows. Design with safe test data, validate every action, then publish only to the intended users.
Explore AppsDirect link to Explore Apps
What can an App do?Direct link to What can an App do?
Apps are customizable web forms built in NIM's drag-and-drop App Designer. Use them to create accounts, update account attributes, manage group memberships, reset passwords, or guide another repeatable identity workflow.
How Apps fit togetherDirect link to How Apps fit together
Forms
Each App contains one or more screens that guide users through a task.Items and variables
Form items collect or display data; variables carry state between screens and actions.Actions
Actions validate input, run mappings, or make controlled changes in target systems.Use Design mode to build the form. Use Run mode to test it as an end user would see it; the Variables tab helps diagnose data flow during testing. Layouts use the Bootstrap grid: a row has up to 12 columns, and each item spans one or more columns within that row.
Build your first AppDirect link to Build your first App
- Open Configuration → Apps and create an App.
- Add a form, then drag items onto the form from the Items tab.
- Configure item properties, variables, validation, and actions.
- Test in Run mode with safe data.
- Grant access, publish, and verify the completed workflow.
For the full end-to-end walkthrough, start the App tutorial.
Control access deliberatelyDirect link to Control access deliberately
NIM creates an Internal system group named nga_[appName] for each App. To use an App, a person needs an Internal system account, membership in the App group, and access granted to that App.
Manage access with group mappings and jobs rather than one-off assignments on the App's Access tab. A later mapping run can overwrite one-off access changes.
Users reach a published App at:
https://<NIM-Hostname>/app/<app-name>
The Administrator account always has access to all Apps.
TypeScript scripts run only inside NIM Apps. Use them for focused App behavior such as validation, lookups, or custom logic; they cannot be triggered from connectors, mappings, jobs, or other NIM features.