SCIM
SCIM (System for Cross-domain Identity Management) lets your Identity Provider (IdP) manage users and groups in your ElevenLabs workspace.
Overview
Section titled “Overview”Prerequisites
Section titled “Prerequisites”- An Enterprise ElevenLabs workspace.
- Workspace admin access in ElevenLabs.
- SSO configured for your workspace. Most identity providers require an existing SSO app integration to attach SCIM provisioning to.
Set up SCIM
Section titled “Set up SCIM”Open SCIM settings
Go to Workspace settings > Security & SSO > SCIM.
Generate a token
Click Generate Token. Copy the Base URL and Bearer token immediately.
Configure your identity provider
In your IdP SCIM/Provisioning configuration:
- Set the SCIM Endpoint/Connector URL to the Base URL copied from ElevenLabs.
- Set the authentication mode to HTTP Bearer Token and paste your token.
For provider-specific instructions, see Setup by Identity Provider.
Capabilities
Section titled “Capabilities”ElevenLabs supports the SCIM 2.0 protocol with the following capabilities:
| Feature | Supported? | Details |
|---|---|---|
| Discovery Endpoints | ✅ Yes | /ServiceProviderConfig, /Schemas, /ResourceTypes |
| Users | ✅ Yes | GET, POST, PUT, PATCH, DELETE |
| Updating a user’s primary email address | ❌ No | |
| Groups | ✅ Yes | GET, POST, PUT, PATCH, DELETE |
| Search | ✅ Yes | GET with ?filter or POST to /.search |
| Pagination | ✅ Yes | Supports startIndex and count |
| Bulk Operations | ✅ Yes | Max operations per request: 100, Max payload size: 1MB |
| Attribute filtering | ✅ Yes | Supports attributes and excludedAttributes |
| Sorting | ❌ No | sortBy and sortOrder are ignored when querying |
Supported attributes
Section titled “Supported attributes”- Users:
userName,name,emails,active,externalId - Groups:
displayName,members,externalId
Setup by Identity Provider
Section titled “Setup by Identity Provider”Microsoft Entra ID setup
Open provisioning settings
In the Microsoft Entra admin center, select your ElevenLabs app, then open Provisioning.
Set provisioning mode
Set Provisioning Mode to Automatic.
Add SCIM credentials
In Admin Credentials:
- Set Tenant URL to your ElevenLabs SCIM Base URL.
- Set Secret Token to your ElevenLabs Bearer token.
Test and enable provisioning
Click Test Connection, save the configuration, then set Provisioning Status to On when ready.
Okta setup
Create or open a custom app integration
Open the ElevenLabs app that is used for SSO sign-in and go to General.
Enable SCIM on the app
Click Edit in App Settings, then set Provisioning to SCIM.
Configure SCIM connection
In Provisioning > Settings > Integration:
- Set the SCIM connector base URL to your ElevenLabs SCIM Base URL.
- Choose the provisioning actions your workspace needs (for example, push new users, push profile updates, and push groups), then run Test Connector Configuration and save.
- Set Authentication Mode to HTTP Header.
- Paste your ElevenLabs Bearer token in the Authorization field.
- Click Save
OneLogin setup
Open your app settings
In OneLogin Admin, open your ElevenLabs app.
Add SCIM credentials in Configuration
In the Configuration tab:
- Set SCIM Base URL to your ElevenLabs SCIM Base URL.
- Set SCIM Bearer token to your ElevenLabs Bearer token.
Enable API connection
Go to Provisioning and check “Enable provisioning” for the app.