SkillhabitDocs
Use Cases

Sync Users With SCIM

Connect your identity provider so Skillhabit users stay in sync.

Situation

You already manage people in an identity provider that supports SCIM, and you do not want to create every Skillhabit user by hand.

Outcome

Your IdP provisions and updates Skillhabit users (and often groups) automatically. Those users show as externally provisioned in Users & Groups. You still set App access and managers in Skillhabit as needed.

Who

Administrators, after Skillhabit has enabled SCIM for the workspace. Coordinate with your identity / Entra admin.

Path

  1. Read User Provisioning—start with What This Is For, then Set Up SCIM. That page also covers Microsoft Entra ID sync when Graph group sync is enough.
  2. Ask Skillhabit to enable SCIM; create an API key.
  3. Configure the SCIM connector in your IdP with the details Skillhabit gives you.
  4. Confirm users appear in Users & Groups and set App access / managers as needed—Users and Profiles.
  5. If people also sign in with Microsoft or OpenID Connect, enable those under SSO and Authentication. SCIM still owns ongoing creates and updates; first-login auto-create is optional and separate.

Tips

  • Prefer Microsoft Entra ID sync in ConfigureConnections when Graph group sync meets your needs—same provisioning guide covers that path.
  • Do not maintain conflicting creates in both SCIM and Graph without agreeing which system owns lifecycle.
  • Approved for Sign Up (first login for Magic Links / Microsoft) is not a substitute for SCIM. It creates accounts on sign-in for listed domains; it does not sync groups or archive leavers—see Allowed Domains for Account Creation.
  • Externally provisioned profiles have limits on what admins can edit—see Bulk Actions and Email.