Stitchflow
Square logo

Square SCIM guide

Connector Only

How to automate Square user provisioning, and what it actually costs

Summary and recommendation

Square, the payment processing platform, does not offer native SCIM provisioning capabilities. While Square supports SAML 2.0 and OIDC SSO for its Dashboard through third-party identity providers like Okta and OneLogin, enterprise identity management features are not publicly documented. Organizations must contact Square directly to discuss SSO and user management options for their custom Enterprise plans, creating uncertainty around provisioning capabilities and pricing.

This lack of transparent SCIM support creates significant operational challenges for IT teams managing Square access across retail locations, finance teams, and merchant operations. Without automated provisioning, administrators must manually create, update, and deactivate user accounts in Square's Dashboard—a time-consuming process that becomes problematic as organizations scale their payment operations. For companies processing sensitive payment data, manual user lifecycle management introduces compliance risks and audit complications.

The strategic alternative

Square has no native SCIM. Automate offboarding, user access reviews, and license workflows across every app, including the ones without APIs. We maintain the integration layer underneath. You focus on judgment, not plumbing.

Quick SCIM facts

SCIM available?No
SCIM tier requiredN/A
SSO required first?No
SSO available?Yes
SSO protocolSAML 2.0 / OIDC
DocumentationNot available

Supported identity providers

IdPSSOSCIMNotes
OktaSquare SSO available via third-party providers. No dedicated Square SCIM integration in Okta OIN.
Microsoft Entra IDSquare SSO available but no documented SCIM provisioning for Azure AD/Entra ID.
Google WorkspaceVia third-partyNo native support
OneLoginVia third-partyNo native support

The cost of not automating

Without SCIM (or an alternative like Stitchflow), your IT team manages Square accounts manually. Here's what that costs:

Source: Stitchflow aggregate data across apps with 2+ instances, normalized to 500 employees
Orphaned accounts (ex-employees with access)7
Unused licenses12
IT hours spent on manual management/year101 hours
Unused license cost/year$3,925
IT labor cost/year$6,088
Cost of compliance misses/year$1,741
Total annual financial impact$11,754

The Square pricing problem

Square gates SCIM provisioning behind premium plans, forcing significant cost increases for basic user management.

Tier comparison

PlanPriceSSOSCIM
FreePay per transaction (2.6% + $0.10)
EnterpriseCustom quote

Pricing structure

PlanPriceSSOSCIM
FreePay per transaction (2.6% + $0.10)
EnterpriseCustom quote

Square's enterprise identity features are not publicly documented. SSO access requires contacting their sales team for custom pricing and relies entirely on third-party identity providers like Okta or OneLogin.

What this means in practice

Without native SCIM, IT administrators face several operational challenges:

Manual user management
Every Square Dashboard user must be created, updated, and deactivated manually
No automated provisioning
New hires can't be automatically granted Square access through your IdP
Third-party dependency
SSO functionality requires maintaining integrations through external providers
Limited visibility
No centralized view of Square user access through your identity management system

Additional constraints

Opaque enterprise pricing
No public pricing for SSO/identity features - requires custom sales engagement
Third-party SSO only
No direct SAML/OIDC integration - must route through providers like Okta or OneLogin
Documentation gaps
Enterprise identity features not publicly documented, creating uncertainty for planning
Payment processing focus
Square's identity management capabilities are secondary to their core payment platform

Summary of challenges

  • Square does not provide native SCIM at any price tier
  • Organizations must rely on third-party tools or manual provisioning
  • Our research shows teams manually provisioning this app spend significant hidden costs annually

What Square actually offers for identity

SAML SSO (Enterprise only)

Square supports SAML 2.0 integration through third-party identity providers, but this is not publicly documented or self-service:

SettingDetails
ProtocolSAML 2.0 / OIDC
AvailabilityEnterprise plans only (custom pricing)
ConfigurationContact Square directly - no self-service setup
DocumentationNot publicly available
Supported IdPsOkta, Azure AD, Google Workspace, OneLogin

Critical limitation: Square's identity features are not documented publicly. Enterprise SSO requires direct vendor contact and custom pricing negotiations.

No SCIM Provisioning

Square does not offer SCIM-based user provisioning:

FeatureSupported?
SAML SSO✓ Yes (Enterprise only)
OIDC SSO✓ Yes (Enterprise only)
Create users❌ No
Update users❌ No
Deactivate users❌ No
Group sync❌ No
JIT provisioning❌ No

The reality: Square is primarily a payment processing platform. User management happens manually through the Square Dashboard, with no automated provisioning capabilities. Even with enterprise SSO, you'll need to manually manage user accounts and permissions.

This creates significant operational overhead for organizations managing Square access across multiple locations or user roles, especially in retail environments where staff turnover is high.

What IT admins are saying

Square's lack of documented enterprise identity features creates uncertainty for IT teams managing payment platforms:

  • No public SCIM documentation despite enterprise customer needs
  • Must contact sales to understand SSO/provisioning capabilities
  • Reliance on third-party identity providers for basic SSO functionality
  • Limited visibility into enterprise security features and pricing

Square Dashboard available via third-party identity providers like Okta and OneLogin.

AuthDigital integration documentation

Contact vendor for enterprise security features.

Square pricing documentation

The recurring theme

Square treats identity management as an afterthought, forcing IT teams to navigate sales conversations just to understand basic provisioning capabilities for a payment platform that handles sensitive financial data.

The decision

Your SituationRecommendation
Small retail business (<10 users)Manual management is acceptable for Square Dashboard access
Growing payment operations teamUse Stitchflow: Square lacks documented SCIM provisioning
Multi-location retail with centralized ITUse Stitchflow: automation essential for consistent access control
Enterprise with compliance requirementsUse Stitchflow: automated provisioning provides audit trail for payment platform access
Complex payment workflows across teamsUse Stitchflow: streamlined user management for critical financial systems

The bottom line

Square is a leading payment platform, but enterprise identity management isn't publicly documented and there's no SCIM provisioning capability. For organizations that need automated user lifecycle management for their payment operations, Stitchflow eliminates the manual overhead and provides the compliance controls enterprises require.

Make Square workflows AI-native

Square has no native SCIM. We build complete offboarding, user access reviews, and license workflows across every app, including the ones without APIs.

Covers apps without native SCIM, including the ones without APIs
Less than a week, start to finish (~2 hours of your time)
Built with your team; extend to anything else in the company
Book a Demo

Technical specifications

SCIM Version

Not specified

Supported Operations

Not specified

Supported Attributes

SSO/SCIM not publicly documentedContact vendor for enterprise featuresNo native SCIM provisioningSSO available via third-party providers

Plan requirement

Not specified

Prerequisites

Not specified

Key limitations

  • SSO/SCIM not publicly documented
  • Contact vendor for enterprise features
  • No native SCIM provisioning
  • SSO available via third-party providers

Documentation not available.

Unlock SCIM for
Square

Square has no native SCIM. We still automate end-to-end workflows across every app, including the ones without APIs.

See how it works
Admin Console
Directory
Applications
Square logo
Square
via Stitchflow

Last updated: 2026-01-11

* Pricing and features sourced from public documentation.

Keep exploring

Related apps

6sense logo

6sense

No SCIM

B2B Revenue Intelligence / ABM

ProvisioningNot Supported
Manual Cost$11,754/yr

6sense, the B2B revenue intelligence platform, has paused SCIM provisioning for new customers until Q4 2026. While existing customers with SCIM enabled can continue using it, new implementations are limited to JIT (Just-In-Time) provisioning through SAML SSO. This creates a significant gap for IT teams managing revenue intelligence access, as JIT only creates users on first login and provides minimal attribute mapping (email, first name, last name only). For an enterprise platform with typical pricing of $55,000-$130,000 annually, the absence of automated user lifecycle management is a substantial limitation. The lack of SCIM until Q4 2026 forces IT teams into manual provisioning workflows for a platform handling sensitive revenue data. While SAML SSO handles authentication, it doesn't address user lifecycle events like role changes, department transfers, or offboarding. This creates compliance risks in revenue teams where access to prospect data and sales intelligence must be tightly controlled. The nearly two-year wait for SCIM restoration means organizations implementing 6sense today face manual user management for the foreseeable future.

View full guide
Aha! logo

Aha!

No SCIM

Product Management / Roadmapping

ProvisioningNot Supported
Manual Cost$11,754/yr

Aha! Roadmaps, the product roadmapping platform, does not support SCIM provisioning on any plan. While Aha! offers SAML 2.0 SSO integration with identity providers like Okta, Entra ID, and OneLogin, this only handles authentication through JIT (Just-In-Time) provisioning. The critical limitation: JIT provisioning creates user accounts with no default role or access permissions, requiring administrators to manually configure access for each user after they first sign in. For product teams managing strategic roadmaps and stakeholder access, this creates significant operational overhead. Since product roadmaps contain sensitive strategic information and stakeholder access typically varies by product area, IT administrators must manually assign appropriate roles and workspace permissions after each user is provisioned. There's no automatic deprovisioning when users leave the organization, creating potential security gaps. This manual process becomes particularly problematic for larger product organizations where dozens of stakeholders across different business units need carefully managed access to specific roadmaps.

View full guide
Appcues logo

Appcues

No SCIM

Product Adoption / User Onboarding

ProvisioningNot Supported
Manual Cost$11,754/yr

Appcues, the product adoption platform used by product managers and growth teams, explicitly does not support SCIM provisioning on any plan—not even Enterprise. While Appcues offers SAML 2.0 SSO integration starting at the Enterprise tier with just-in-time (JIT) provisioning, this only creates users during first login and provides no automated deprovisioning capabilities. For product teams where access needs change frequently as people move between projects or leave the company, this creates a significant security gap. The lack of SCIM means IT teams must manually manage user lifecycle for Appcues accounts, even though the platform handles sensitive product analytics and user flow data. When employees leave or change roles, their Appcues access remains active until manually revoked—a compliance risk that's particularly problematic given Appcues' role in tracking user behavior and product metrics. With MAU-based pricing starting at $300/month and scaling significantly with usage, paying for orphaned accounts also creates unnecessary cost bloat.

View full guide