Stitchflow
Spiff logo

Spiff User Management Guide

Manual workflow

How to add, remove, and manage users with operational caveats that matter in production.

UpdatedMar 17, 2026

Summary and recommendation

Spiff user management can be run manually, but complexity usually increases with role models, licensing gates, and offboarding dependencies. This guide gives the exact mechanics and where automation has the biggest impact.

Spiff is a sales commission management platform used by finance, revenue operations, and sales operations teams to automate incentive compensation plans.

Administrators manage users, plans, and teams from a centralized table view, with the ability to add effective dates on any user or plan and lock historical statements.

The platform surfaces real-time commission statements to every app user - reps, managers, and finance - across web, mobile, and Salesforce.

Publicly available documentation on the specific admin console path, user types, permission model granularity, and step-by-step add/remove user flows is sparse.

The research did not surface a confirmed admin console URL or enumerated role definitions from official Spiff help documentation.

Quick facts

Admin console pathSettings / Administration > Users and Roles (exact labels vary by tenant)
SCIM availableYes
SCIM tier requiredEnterprise
SSO prerequisiteNo

User types and roles

Role Permissions Cannot do Plan required Seat cost Watch out for
Admin Can manage tenant settings, integrations, and user access. Cannot grant functionality outside the modules licensed for the tenant. Detailed built-in role names are not fully documented publicly.
Standard User Can use the core product features exposed to their role. May not be able to manage tenant settings or other users. Exact privileges can vary by tenant configuration.

Permission model

  • Model type: role-based
  • Description: Spiff appears to use role-based access for tenant administration and general product use, but the detailed permission matrix is not publicly documented in full.
  • Custom roles: Unknown
  • Custom roles plan: Not documented
  • Granularity: Expect administrative access to be separated from standard user access, with exact scopes configured per tenant.

How to add users

  1. Log in as an administrator.
  2. Open settings or administration and navigate to users.
  3. Choose the add or invite user action.
  4. Enter the user's work email and assign the appropriate role.
  5. Save the user and complete any activation or SSO steps required by the tenant.

Required fields: Work email address, Role

Watch out for:

  • Public documentation for user administration is limited, so exact labels may vary by tenant.
  • If SSO is enabled, upstream IdP assignment may still be required.
Bulk option Availability Notes
CSV import Unknown Not documented
Domain whitelisting Unknown Automatic domain-based user add
IdP provisioning Yes Enterprise

How to remove or deactivate users

  • Can delete users: Unknown
  • Delete/deactivate behavior: Public docs do not clearly document whether users are disabled, deleted, or both. Treat lifecycle behavior as tenant-specific unless confirmed in-product.
  1. Open the users area as an administrator.
  2. Locate the user to offboard.
  3. Disable, revoke, or remove the account using the controls available in that tenant.
  4. Review any integrations or service credentials associated with the departing user.
Data impact Behavior
Owned records Tenant data remains in the workspace; public docs do not describe user-owned content semantics in detail.
Shared content Shared dashboards, configurations, and records remain available unless separately removed.
Integrations Review service credentials and integration ownership separately during admin offboarding.
License freed Seat reuse behavior is contract-dependent and not publicly documented in detail.

Watch out for:

  • Offboarding should include token and integration review, not just interactive login removal.

License and seat management

Seat type Includes Cost
Named user seat $75/user/month (Pro tier, per pricing seed data; Enterprise pricing is custom)
  • Where to check usage: Settings / Administration > Users and Roles
  • How to identify unused seats: Review the tenant user list and any visible login or activity metadata. No public unused-seat report was verified.
  • Billing notes: Pricing seed data indicates $75/user/month for Pro tier; Enterprise pricing is custom. These figures could not be independently verified against a current official pricing page at research time.

The cost of manual management

Spiff uses named user seats. The Pro tier is listed at $75/user/month; Enterprise pricing is custom and requires direct engagement with Spiff's sales team.

These figures are drawn from third-party sources and could not be independently verified against a current official Spiff pricing page at research time - treat them as directional only.

No usage-check path or method for identifying unused seats was confirmed in publicly available documentation. License reclamation workflows are not described in Spiff's public help content.

The decision

Manual user management in Spiff is viable for smaller teams or organizations not yet on the Enterprise plan, but the absence of documented self-serve admin flows is a meaningful gap. Every app user who needs commission visibility - reps, managers, finance - requires a named seat, so seat hygiene directly affects cost at scale.

If your organization is on or moving to the Enterprise plan and uses a centralized IdP, SCIM provisioning is the more defensible path for lifecycle management. Manual management without SCIM introduces offboarding risk, particularly for a platform where departing reps retain access to real-time commission data until manually removed.

Bottom line

Spiff's manual user management story is underdocumented in public-facing resources: admin console paths, role definitions, and deactivation steps were not confirmed at research time.

What is clear is that every app user consumes a named seat, making unused-seat audits important for cost control - yet no self-serve usage-check path is publicly described.

Teams managing more than a handful of users should treat SCIM on the Enterprise plan as the intended provisioning path rather than a premium add-on.

Automate Spiff workflows without one-off scripts

Stitchflow builds and maintains end-to-end IT automation across your SaaS stack, including apps without APIs. Built for exactly how your company works, with human approvals where they matter.

Every app coverage, including apps without APIs
60+ app integrations plus browser automation for apps without APIs
IT graph reconciliation across apps and your IdP
Less than a week to launch, maintained as APIs and admin consoles change
SOC 2 Type II. ~2 hours of your team's time

UpdatedMar 17, 2026

* Details sourced from official product documentation and admin references.

Keep exploring

Related apps

15Five logo

15Five

Full API + SCIM
AutomationAPI + SCIM
Last updatedFeb 2026

15Five uses a fixed role-based permission model with six predefined roles: Account Admin, HR Admin, Billing Admin, Group Admin, Manager, and Employee. No custom roles can be constructed. User management lives at Settings gear → People → Manage people p

1Password logo

1Password

Full API + SCIM
AutomationAPI + SCIM
Last updatedFeb 2026

1Password's admin console at my.1password.com covers the full user lifecycle — invitations, group assignments, vault access, suspension, and deletion — without any third-party tooling. Like every app that mixes role-based and resource-level permissions

8x8 logo

8x8

Full API + SCIM
AutomationAPI + SCIM
Last updatedFeb 2026

8x8 Admin Console supports full lifecycle user management — create, deactivate, and delete — across its X Series unified communications platform. Every app a user can access (8x8 Work desktop, mobile, web, Agent Workspace) is gated by license assignmen