Setting up SCIM with Entra ID (Azure AD)

To enable SCIM, you must first set up SAML SSO with Entra ID (AAD). Read this article to find out how.

First, go to Workspace settings, which you'll find under your workspace name in the top left corner:

Enable SCIM provisioning and click "Reveal" to retrieve an OAuth token:

In the "Provisioning" tab in Entra ID (AAD), set "Provisioning Mode" to "Automatic", and paste the following URL into "Tenant URL":

https://api.whimsical.com/scim-v2/?aadOptscim0620200

Then, paste your OAuth token under "Secret Token", click "Test Connection", and Save:

NoteLink to this section

  • To use SCIM, SAML has to be enabled and correctly configured.
  • After user creation, given name and family name fields can only be updated by the users themselves in Whimsical.
  • Provisioned users will receive an activation email and will have to log in through SAML to appear in your workspace in Whimsical.
  • If the editor role is set to undefined, the user will be provisioned with the default role enabled in the Whimsical workspace.
  • If you disable SAML in your Whimsical settings, SCIM will also be disabled. After reenabling SAML and SCIM, you will have to import all users into Entra ID (AAD).
  • Once SCIM is enabled, please make any user role changes directly from Entra ID (AAD) since Entra ID (AAD) will overwrite the choices made within the Whimsical app.

Written by:

  • Dārta

    Dārta