Summary and recommendation
Dropbox Sign (formerly HelloSign) does not support SCIM provisioning on any plan, despite offering SAML 2.0 SSO integration with identity providers like Okta and JumpCloud on Premium and Enterprise tiers. While Dropbox has indicated SCIM is on their future roadmap, there's no timeline for implementation. This creates a significant gap for IT teams managing e-signature workflows across sales, HR, and legal departments, where user lifecycle management must be handled entirely through manual processes.
The SSO-only approach leaves IT administrators with a critical blind spot: while users can authenticate seamlessly, provisioning and deprovisioning must be managed manually in Dropbox Sign's admin console. For organizations with frequent employee turnover or complex approval workflows involving external stakeholders, this manual overhead becomes a compliance and security risk, as terminated employees may retain access to sensitive document workflows if not manually removed.
The strategic alternative
HelloSign has no native SCIM. Automate offboarding, user access reviews, and license workflows across every app, including the ones without APIs. We maintain the integration layer underneath. You focus on judgment, not plumbing.
Quick SCIM facts
| SCIM available? | No |
| SCIM tier required | N/A |
| SSO required first? | Yes |
| SSO available? | Yes |
| SSO protocol | SAML 2.0 |
| Documentation | Not available |
Supported identity providers
| IdP | SSO | SCIM | Notes |
|---|---|---|---|
| Okta | Via third-party | ❌ | SSO only via SAML 2.0. No SCIM provisioning available. |
| Microsoft Entra ID | Via third-party | ❌ | No native Entra integration for Dropbox Sign. Dropbox Business (separate product) has Entra SCIM support, but Dropbox Sign does not. |
| Google Workspace | Via third-party | ❌ | No native support |
| OneLogin | Via third-party | ❌ | No native support |
The cost of not automating
Without SCIM (or an alternative like Stitchflow), your IT team manages HelloSign accounts manually. Here's what that costs:
The HelloSign pricing problem
HelloSign gates SCIM provisioning behind premium plans, forcing significant cost increases for basic user management.
Tier comparison
| Plan | Price | SSO | SCIM |
|---|---|---|---|
| Essentials | $15/user/month (annual) | ||
| Standard | $25/user/month (annual) | ||
| Premium | Contact sales | ||
| Enterprise | Contact sales |
Pricing and provisioning options
| Plan | Price | SSO | SCIM |
|---|---|---|---|
| Essentials | $15/user/month (annual) | ||
| Standard | $25/user/month (annual) | ||
| Premium | Contact sales | ||
| Enterprise | Contact sales |
Note: SCIM provisioning is listed on Dropbox Sign's roadmap but has no committed timeline.
What this means in practice
Without SCIM support, IT teams face these operational challenges:
This is particularly problematic for e-signature workflows where employees across sales, HR, and legal departments need rapid access to complete time-sensitive document processes.
Additional constraints
Summary of challenges
- HelloSign does not provide native SCIM at any price tier
- Organizations must rely on third-party tools or manual provisioning
- Our research shows teams manually provisioning this app spend significant hidden costs annually
What HelloSign actually offers for identity
SAML SSO (Premium/Enterprise)
Dropbox Sign (formerly HelloSign) supports SAML 2.0 integration for single sign-on:
| Setting | Details |
|---|---|
| Protocol | SAML 2.0 |
| Supported IdPs | Okta, JumpCloud, custom SAML providers |
| Configuration | SP-initiated and IdP-initiated flows |
| User requirement | Manual user provisioning required |
Critical limitation: HelloSign supports SSO authentication but provides no automated user provisioning. Every user must be manually added to your HelloSign account before they can authenticate via SAML.
Okta Integration (via OIN)
The official Okta Integration Network listing for HelloSign shows:
| Feature | Supported? |
|---|---|
| SAML SSO | ✓ Yes |
| OIDC SSO | ❌ No |
| Create users | ❌ No |
| Update users | ❌ No |
| Deactivate users | ❌ No |
| Group push | ❌ No |
No SCIM Provisioning Available
HelloSign has acknowledged SCIM as a future roadmap item but currently offers no automated provisioning:
Important note: Don't confuse this with Dropbox Business, which does support SCIM. Dropbox Sign (the e-signature platform) is a separate product with separate limitations.
For organizations using HelloSign across sales, HR, and legal teams, this means IT admins must manually provision and deprovision every user account—a significant operational burden as teams scale.
What IT admins are saying
Dropbox Sign's lack of SCIM provisioning forces manual user management despite having SSO:
- Every user must be manually added to Dropbox Sign before they can use SSO
- No automated deprovisioning when employees leave the company
- IT teams must maintain separate user lists in their IdP and Dropbox Sign
- Easy to forget removing ex-employees from the e-signature platform
User accounts must be manually created in Dropbox Sign before SSO authentication will work. SCIM provisioning is on our roadmap but not yet available.
SAML SSO for Enterprise/Premium. Okta, JumpCloud recommended. SCIM on roadmap but not yet implemented.
The recurring theme
Even with SAML SSO configured, IT admins must manually provision and deprovision every user in Dropbox Sign. This creates security gaps when former employees retain access to sign documents on behalf of the company.
The decision
| Your Situation | Recommendation |
|---|---|
| Small team (<20 users) with low turnover | Manual management is acceptable |
| Growing e-signature usage but budget-conscious | Use Stitchflow: automate before manual overhead becomes unmanageable |
| Enterprise with compliance/audit requirements | Use Stitchflow: automation essential for proper access control documentation |
| Heavy document workflow with frequent user changes | Use Stitchflow: manual provisioning creates security gaps and admin burden |
| Multi-department usage (Sales, HR, Legal) | Use Stitchflow: automation strongly recommended for cross-team governance |
The bottom line
Dropbox Sign offers solid SSO capabilities but completely lacks SCIM provisioning—it's still on their roadmap with no timeline. For organizations that need automated user lifecycle management for their e-signature workflows, Stitchflow eliminates the manual overhead and security risks of managing users by hand.
Make HelloSign workflows AI-native
HelloSign has no native SCIM. We build complete offboarding, user access reviews, and license workflows across every app, including the ones without APIs.
Technical specifications
SCIM Version
Not specifiedSupported Operations
Not specifiedSupported Attributes
Plan requirement
Not specifiedPrerequisites
Not specifiedKey limitations
- No SCIM provisioning
- SCIM mentioned as future roadmap
- Admins can still use password login during testing
- Different from Dropbox Business which does support SCIM
Documentation not available.
Configuration for Okta
Integration type
Okta Integration Network (OIN) app
Prerequisite
SSO must be configured before enabling SCIM.
Where to enable
Docs
SSO only via SAML 2.0. No SCIM provisioning available.
Use Stitchflow for automated provisioning.
Unlock SCIM for
HelloSign
HelloSign has no native SCIM. We still automate end-to-end workflows across every app, including the ones without APIs.
See how it works


