Asana SCIM integrationAsana SCIM logo

Asana SCIM integration for AI agents.

Asana SCIM integration for AI agents with secure authentication and server-side credential injection. Open Connector runs the OAuth, seals the token in an encrypted vault, and serves Asana SCIM tools to your agent over MCP or a typed API — credentials injected server-side, every call audited, nothing leaving your infrastructure. Open source (AGPL-3.0) and self-hostable.

What your agents can do

Real Asana SCIM actions, managed and audited.

Your user connects Asana SCIM once; your agent can then provision and deprovision users and groups in an Asana Enterprise Domain through the SCIM 2.0 API — scoped to the OAuth permissions you grant and the tool allowlist you configure. Every action is least-privilege and written to a tamper-evident audit trail.

  1. 1

    Your user grants Asana SCIM access once (OAuth) — the token lands in the vault.

  2. 2

    Your agent calls a tool over MCP or the typed API; Open Connector injects the credential server-side.

  3. 3

    Every routed call appends a hash-chained audit record — nothing leaves your infra.

Tools & triggers

Supported Asana SCIM tools.

14 tools are generated from the published Asana SCIM catalog. Descriptions are plain text; each action remains subject to its configured authentication and tool allowlist.

Showing 14 tools. All published catalog entries are included in this page's server-rendered HTML.

Create a group
Creates an Asana team from a SCIM Group resource.
Groups
Create a user
Creates an Asana user when the submitted SCIM user does not already exist.
Users
Deprovision a user
Deprovisions the selected user in Asana.
Users
Get a group
Retrieves one SCIM group, mapped to an Asana team, by resource ID.
Groups
Get the SCIM service provider configuration
Returns read-only metadata describing Asana's supported SCIM capabilities.
Service provider
Get a user
Retrieves one non-guest user in the Enterprise Domain by SCIM resource ID.
Users
List groups
Lists SCIM groups, which Asana maps to teams in the Enterprise Domain.
Groups
List SCIM resource types
Returns read-only metadata describing the SCIM resource types supported by Asana.
Service provider
List SCIM schemas
Returns read-only metadata describing the SCIM schemas supported by Asana.
Service provider
List users
Lists users in the Enterprise Domain. Guest users are not returned.
Users
Patch a group
Applies SCIM PatchOp operations to the selected group's attributes or members.
Groups
Patch a user
Applies SCIM PatchOp operations to a user, including deprovisioning with active=false.
Users
Replace a group
Replaces the selected group's display name and membership attributes.
Groups
Replace a user
Replaces a user's SCIM attributes or deprovisions the user when active is false.
Users
FAQ

Asana SCIM integration, answered

How do AI agents use Asana SCIM through Open Connector?
Your user connects Asana SCIM once with one of its cataloged authentication methods. Open Connector stores the credential in an encrypted vault and exposes Asana SCIM tools to your agent over MCP or a typed API, with credentials injected server-side on each call.
Is this a Asana SCIM MCP server?
Yes. Open Connector can serve Asana SCIM as a named MCP server with a scoped allowlist and a per-user connection URL, so any MCP client can call Asana SCIM actions with credentials injected server-side.
Where do Asana SCIM credentials live?
In your own infrastructure. Open Connector keeps credentials in its own vault and injects them at call time, so they never leave your environment.

Give your agents Asana SCIM — keep the keys.

Open source, self-hostable, with Asana SCIM credentials that never leave your infrastructure. Run it from source today.