Heads Up!
This guide covers the JumpCloud SSO integration only. If you want to integrate JumpCloud as an MDM or IDP, see here.
Connecting JumpCloud to Scrut as an SSO provider lets your admins and employees log in to Scrut and the Employee Portal using their JumpCloud accounts, without needing a one-time password each time.
What This Integration Does in Scrut
SSO: Enables admins and employees to log in to Scrut and the Employee Portal, respectively, using their JumpCloud accounts.
Prerequisites
Before you begin, make sure you have an active JumpCloud account with administrator access
Permissions and Access Requirements
For JumpCloud
Administrator access to create and configure an SSO application in JumpCloud (Only the email scope is consumed during authentication)
For Scrut
Admin access to Scrut, or Contributor access with the Integrations module enabled
Data Collected
User identity: Email address (Pulled from the email scope in JumpCloud)
JumpCloud SSO session: Used to authenticate users into Scrut
Sync Frequency
Data is synced automatically once every 24 hours. You can also manually trigger a sync from the integration settings page.
Integration Setup
Step 1: Configure the SSO Application in JumpCloud
Log in to your JumpCloud Admin Portal.
Follow the steps in the JumpCloud SSO (OIDC) Guide to create a new SSO application for Scrut. This generates your Client ID and Client Secret.
Copy both values as you’ll need to enter them in Scrut in Step 2.
In the SSO tab of the application, enter the Login URL that matches your Scrut account region:
India Region: https://app.scrut.io/login/jumpcloud-sso/authorization-code/callback
Europe Region: https://app.eu.scrut.io/login/jumpcloud-sso/authorization-code/callback
US Region: https://app.us.scrut.io/login/jumpcloud-sso/authorization-code/callback
In the Redirect URIs field, add the region-specific URL.
Important: You must also add the following Redirect URI in addition to the links mentioned above. https://scrut.eu.auth0.com/login/callback. This is critical to ensure that the integration works successfully with Scrut’s Auth0 migration. To know more, see here.
.png)
Scroll to the Attribute Mapping section in the SSO tab.
Under Standard Scopes, select the Email checkbox.
Important: Selecting the Email scope is mandatory. Without it, users will not be able to authenticate into Scrut.
Click Save.

Step 2: Connect JumpCloud in Scrut
Sign in to Scrut and click Integrations in the left navigation panel.
Click the Integrations Library tab at the top of the page.
In the Category panel on the left, scroll to Identity Providers. Search for JumpCloud in the search bar.
Click Integrate on the JumpCloud (SSO) tile. This opens the JumpCloud (SSO) integration page.

In the Credentials section, paste the Client ID and Client Secret you copied from JumpCloud.
Click Submit.

A success toast message appears, and the status updates to Connected.

What Happens Next?
Initial data sync
After the integration is connected, Scrut begins syncing user data automatically. You can monitor sync activity from the Audit Log tab on the JumpCloud (SSO) integration page.
Review synced data
Navigate to Settings → Administration and turn on the JumpCloud (SSO) toggle. Once this is done, your team members will be able to access the Scrut platform (app.scrut.io) and the employee portal using their JumpCloud credentials.
FAQs
1: What is the difference between JumpCloud SSO and JumpCloud as an IDP or MDM in Scrut?
The SSO integration is used only for authentication. It permits users to log in to Scrut using their JumpCloud credentials. The IDP and MDM integrations serve different purposes, such as syncing device data and running compliance checks. See JumpCloud MDM/IDP help guide for those setup steps.
2: What happens if a user is removed from JumpCloud?
If a user is removed from JumpCloud, they will no longer be able to log in to Scrut via SSO. Their record in Scrut is not automatically deleted.
3: What happens if I update the Client Secret in JumpCloud?
If you rotate or update the Client Secret in JumpCloud, you must update it in Scrut as well. Go to Integrations, open the JumpCloud (SSO) integration, enter the new Client Secret in the Credentials section, and click Submit.
Reach out to support@scrut.io or contact your CSM for further assistance.