Permissions for /scim/v2/Users/

  • 1
  • Problem
  • Updated 1 year ago
In API docs, it is stated that ReadAccounts permission is required for /scim/v2/Users API call. However, when I look into API Analytics or Graduating Requirements, this permission is not used. Is it save to drop this permission for graduating the app?
Photo of IA


  • 164 Points 100 badge 2x thumb

Posted 1 year ago

  • 1
Photo of John Wang

John Wang, Official Rep

  • 5,786 Points 5k badge 2x thumb
You need to keep the permission. We've verified this issue and are working on a fix to track these API calls for graduation.

To graduate your app, please create a support ticket by emailing or clicking the ticket link at the bottom of the following page so we can get your app details to graduate.

For verification, when I call "GET /scim/v2/Users" without ReadAccounts permissions, I get a "403 Forbidden - CMN-401 Insufficient Permissions" error so you need the permission.