Targets
Keeper Security
Was this page helpful?
Documentation Index
Fetch the complete documentation index at: /docs/llms.txt
Use this file to discover all available pages before exploring further.
| Setting | Required | Description |
|---|---|---|
| SCIM URL | Yes | Provisioning endpoint of the node, as the Keeper Admin Console shows it, such as https://keepersecurity.com/api/rest/scim/v2/1234567890123. |
| Bearer token | Yes | Token generated alongside that endpoint. Keeper shows it once, when the provisioning method is created. Stored encrypted. |
| Capability | Required | Granted by (any one) |
|---|---|---|
| Provision users | Yes | Provisioning bearer token |
| Read teams | Yes | Provisioning bearer token |
| Field | Type | Required | Description |
|---|---|---|---|
userName | string | Yes | Email address the user signs in to Keeper with. |
displayName | string | Full name shown in the Keeper Admin Console. | |
givenName | string | First name. | |
familyName | string | Last name. | |
active | bool | Whether the user is active. An inactive user is locked out, and keeps their vault. | |
teams | grant | Teams the user belongs to, which is what shares records with them. One row grants one team. | |
teams[] | string | Team ID. |
| Account field | Worker field |
|---|---|
userName | worker.business_email |
stage active {
target keeper.user {
userName = worker.business_email
displayName = worker.display_name
givenName = worker.legal_name.given
familyName = worker.legal_name.family
active = true
teams = ["Engineering"]
}
}
Was this page helpful?