Stitchflow
Spring Health logo

Spring Health SCIM guide

Connector Only

How to automate Spring Health user provisioning, and what it actually costs

Native SCIM not available

Summary and recommendation

Spring Health, the employee mental health benefits platform, does not offer SCIM provisioning capabilities. As a B2B benefits platform where employers purchase access for their entire workforce, Spring Health focuses on bulk employee onboarding rather than individual user lifecycle management through identity providers. While limited SSO integration exists through Azure Marketplace, this only handles authentication for existing users—Spring Health expects employers to manage user provisioning through their HR systems or bulk enrollment processes.

This creates a significant gap for IT teams managing employee benefits access. Without SCIM provisioning, adding or removing employees from Spring Health requires manual coordination between HR and benefits administrators, often involving CSV uploads or separate administrative portals. When employees join, leave, or change roles, their Spring Health access doesn't automatically sync with your identity provider, creating security risks and compliance gaps in your employee benefits stack.

The strategic alternative

Spring Health has no native SCIM. Automate offboarding, user access reviews, and license workflows across every app, including the ones without APIs. We maintain the integration layer underneath. You focus on judgment, not plumbing.

Quick SCIM facts

SCIM available?No
SCIM tier requiredN/A
SSO required first?No
SSO available?Yes
SSO protocolSAML 2.0
DocumentationNot available

Supported identity providers

IdPSSOSCIMNotes
OktaVia third-partyNo Okta OIN integration found. Spring Health is primarily a B2B employee benefits platform where employers purchase access for their workforce.
Microsoft Entra IDAzure Marketplace listing exists for SSO integration. No SCIM provisioning documentation found.
Google WorkspaceVia third-partyNo native support
OneLoginVia third-partyNo native support

The cost of not automating

Without SCIM (or an alternative like Stitchflow), your IT team manages Spring Health accounts manually. Here's what that costs:

Source: Stitchflow research, normalized to 500 employees:
Orphaned accounts (ex-employees with access)5
Unused licenses12
IT hours spent on manual management/year85 hours
Unused license cost/year$3,500
IT labor cost/year$5,100
Cost of compliance misses/year$890
Total annual financial impact$9,490

The Spring Health pricing problem

Spring Health gates SCIM provisioning behind premium plans, forcing significant cost increases for basic user management.

Tier comparison

PlanPriceSSOSCIM
EnterpriseCustom (employer-paid)

Pricing structure

PlanPricingSCIMSSO
EnterpriseCustom (employer-paid)❌ Not available✓ Via Azure Marketplace

Spring Health uses custom pricing negotiated directly with employers based on employee headcount and benefits package selection. No public pricing is available since it's exclusively B2B.

What this means in practice

Without SCIM provisioning, IT teams managing Spring Health access face significant operational overhead:

Manual account creation
Every new employee requires manual account setup through Spring Health's admin portal
No automated deprovisioning
Departing employees must be manually removed, creating security risks if forgotten
No group management
Unable to sync departmental access or role-based permissions from your IdP
Disconnect from HR systems
Employee lifecycle changes don't automatically flow to Spring Health access

For a 500-employee organization with 10% monthly turnover, this translates to ~100 manual user management tasks per month.

Additional constraints

B2B-only model
Individual employees cannot directly purchase access - requires employer-wide contract
HR system dependency
Employee eligibility is often tied to HR status, creating coordination challenges
Limited visibility
IT teams may lack insight into who's actually using mental health benefits
Custom integration required
Any automation must be built using Spring Health's proprietary APIs or admin interfaces

Summary of challenges

  • Spring Health does not provide native SCIM at any price tier
  • Organizations must rely on third-party tools or manual provisioning
  • Our research shows teams manually provisioning this app spend significant hidden costs annually

What Spring Health actually offers for identity

Azure AD/Entra SSO Integration

Spring Health provides SAML-based single sign-on through the Azure Marketplace:

SettingDetails
ProtocolSAML 2.0
Azure MarketplaceAvailable
ConfigurationStandard Azure AD SAML setup
User requirementManual provisioning required

Critical gap: The Azure integration only handles authentication. User accounts must still be manually created and managed in Spring Health's admin portal.

Okta Integration Status

FeatureSupported?
SAML SSO❌ No OIN listing
OIDC SSO❌ No
SWA (password vaulting)❌ No
Create users❌ No
Update users❌ No
Deactivate users❌ No
Group push❌ No

Spring Health has no presence in the Okta Integration Network, leaving Okta customers without any automated provisioning options.

The B2B Reality

Spring Health operates as an employee benefits platform where:

Employers purchase licenses for their entire workforce
Employee access is managed through Spring Health's employer portal
No public SCIM API or user provisioning documentation exists
Custom pricing is negotiated per employer contract

This B2B model creates a provisioning black hole - IT teams can't automate user lifecycle management through standard SCIM protocols, forcing manual administration for employee mental health benefits.

What IT admins are saying

Spring Health's B2B-only model creates unique identity management challenges for IT teams:

  • Manual employee roster management with no automated sync from HR systems
  • Complex onboarding when Spring Health access depends on employer contract negotiations
  • No standardized provisioning process - each implementation requires custom coordination
  • Difficulty tracking which employees have activated their Spring Health benefits

Spring Health is primarily a B2B employee benefits platform where employers purchase access for their workforce

Azure Marketplace documentation

User access is typically managed through employer HR systems

Integration research findings

The recurring theme

Unlike typical SaaS apps, Spring Health requires IT teams to coordinate user access through a B2B benefits model rather than direct provisioning, creating dependencies on HR processes and employer-level contract management that bypass standard identity provider workflows.

The decision

Your SituationRecommendation
Small team (<25 employees) with low turnoverManual management may be acceptable
HR-driven Spring Health deploymentCoordinate with HR systems - Stitchflow can bridge the gap
Enterprise with frequent workforce changesUse Stitchflow: automation essential for scale
Multi-location company with complex org structureUse Stitchflow: automation strongly recommended
Compliance-focused organization needing audit trailsUse Stitchflow: automated provisioning creates proper documentation

The bottom line

Spring Health is a valuable employee benefits platform, but it operates as a B2B service without modern identity management infrastructure. There's no SCIM support and user management typically flows through employer HR processes rather than IT systems. For organizations that need automated provisioning aligned with their identity provider, Stitchflow bridges this gap seamlessly.

Make Spring Health workflows AI-native

Spring Health has no native SCIM. We build complete offboarding, user access reviews, and license workflows across every app, including the ones without APIs.

Covers apps without native SCIM, including the ones without APIs
Less than a week, start to finish (~2 hours of your time)
Built with your team; extend to anything else in the company
Book a Demo

Technical specifications

SCIM Version

Not specified

Supported Operations

Not specified

Supported Attributes

B2B employee benefits platform - employers purchase for employeesNo public SCIM API documentation foundEmployee access is typically managed through employer HR systemsCustom pricing negotiated with each employer

Plan requirement

Not specified

Prerequisites

Not specified

Key limitations

  • B2B employee benefits platform - employers purchase for employees
  • No public SCIM API documentation found
  • Employee access is typically managed through employer HR systems
  • Custom pricing negotiated with each employer

Documentation not available.

Configuration for Entra ID

Integration type

Microsoft Entra Gallery app

Where to enable

Entra admin center → Enterprise applications → Spring Health → Single sign-on

Azure Marketplace listing exists for SSO integration. No SCIM provisioning documentation found.

Use Stitchflow for automated provisioning.

Unlock SCIM for
Spring Health

Spring Health has no native SCIM. We still automate end-to-end workflows across every app, including the ones without APIs.

See how it works
Admin Console
Directory
Applications
Spring Health logo
Spring Health
via Stitchflow

Last updated: 2026-01-20

* Pricing and features sourced from public documentation.

Keep exploring

Related apps

Abnormal Security logo

Abnormal Security

No SCIM

Security / Email Security

ProvisioningNot Supported
Manual Cost$9,490/yr

Abnormal Security, the AI-powered email security platform protecting against BEC and phishing attacks, does not offer SCIM provisioning on any plan. While the platform supports SAML 2.0 SSO integration with identity providers like Okta and Entra ID, this only handles authentication—not automated user lifecycle management. Security teams must manually provision and deprovision analyst access through Abnormal's portal, creating operational overhead and potential security gaps in a platform specifically designed to protect against email-based threats. This manual provisioning model creates significant challenges for security operations. When new SOC analysts join or existing team members change roles, IT admins must coordinate manual account creation and permission updates in Abnormal Security. For a platform that's critical to threat detection and incident response, delays in provisioning can leave security gaps, while delayed deprovisioning creates compliance risks. The irony is stark: a security platform designed to prevent account takeover and credential abuse lacks the automated provisioning controls that prevent exactly these risks.

View full guide
Airwallex logo

Airwallex

No SCIM
ProvisioningNot Supported
Manual Cost$9,490/yr

Airwallex, the global payments and treasury platform, offers no SCIM provisioning support on any plan, including their custom Accelerate enterprise tier. Despite being positioned for enterprise use with features like multi-entity management and advanced treasury controls, Airwallex lacks any official identity provider integrations—no SSO, no provisioning, and no presence in major IdP galleries like Okta's OIN or Microsoft Entra. This creates a significant operational burden for IT teams managing financial access across growing organizations, where manual user provisioning and deprovisioning in a payments platform presents both efficiency and security risks. The absence of identity management capabilities means IT administrators must manually create, update, and remove user accounts in Airwallex—a particularly concerning gap given that this platform handles sensitive financial operations, cross-border payments, and treasury management. Without automated deprovisioning, former employees could retain access to financial systems, creating compliance risks and potential security vulnerabilities that most finance and IT teams cannot afford to overlook.

View full guide
Alkami logo

Alkami

No SCIM
ProvisioningNot Supported
Manual Cost$9,490/yr

Alkami, the digital banking platform used by banks and credit unions, does not offer SCIM provisioning or public SSO integrations. As an enterprise-only platform with custom pricing, Alkami appears to handle user management through direct account administration rather than standardized identity protocols. This creates significant challenges for financial institutions that need to integrate Alkami with their existing identity infrastructure—particularly problematic given the compliance requirements and security standards that banks must maintain. The lack of automated provisioning means IT teams at financial institutions must manually create, update, and deprovision user accounts in Alkami. For a platform handling sensitive financial data and customer information, this manual approach introduces compliance risks and operational overhead. Banks typically require seamless integration between their core identity systems and all applications accessing customer data.

View full guide