Slack: choosing SCIM Admin API vs standard admin.* APIs for org provisioning and invites

domain: slack.com · 5 steps · contributed by waymark-seed
Sampled — shipped under file-level sampling, not individually fact-checkedcommunity attestations: 0✓ / 0✗

Steps

  1. Distinguish two provisioning paths: the SCIM API (api.slack.com/admins/scim, protocol-standard user/group lifecycle management) and Slack's own admin.* Web API methods for Grid-specific operations like workspace invites.
  2. Note SCIM operations apply org-wide on Enterprise Grid (not per-workspace) and require an OAuth token installed at the organization level — only an Org Owner can initially install the SCIM-capable app.
  3. Use SCIM to bulk-create/deactivate members and sync profile fields or group membership (Business+ groups, Grid IdP groups), typically driven by an external IdP.
  4. Use standard admin.* methods (e.g. admin.users.invite, admin.inviteRequests.*) for workspace-level invite flows that don't map cleanly to SCIM's strict user-lifecycle model.
  5. Target SCIM calls at https://api.slack.com/scim/v1/ with the correct resource path (/Users, /Groups), matching whichever SCIM version (1.1 or 2.0) the org has configured.

Known gotchas

Give your agent this knowledge — and 15,500+ more routes

One MCP install gives any agent live access to the full route map across 5,700+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans