API Commons · Identity · ratified standard

SCIM 2.0

368 providers in the API Evangelist catalog mention SCIM — the largest claim cohort of any standard in this programme. 77 of them publish an OpenAPI containing a SCIM path, and those are the denominator.

24operations graded
5core tier
12extended
7vendor only
320adopters recorded
This one was ratified. The other five profiles in this programme describe interfaces that became standards by being copied, where no specification exists to check anyone against. SCIM was ratified in 2015. Describing it again would add nothing; what is missing is the measurement of what the industry actually built, set beside what the RFC actually says.

How it was measured

Two gradings per operation. `normative_force` is what RFC 7644 says, quoted. `tier` is what the industry declares, measured the same way as every other profile here. The gap between them is the point.

The core tier

What a provider has to implement before a compatibility claim means anything. Every placement is measured, and the evidence for each sits in the tier profile.

GET /UsersPOST /UsersGET /Users/{id}PUT /Users/{id}DELETE /Users/{id}

Adopters

EvidenceCountWhat it means
declared51Publishes a machine-readable spec declaring them.
prose269Says so, and publishes nothing a reader can check.

Every entry in the registry carries the URL it was read from and the date it was read. A claim is never promoted to a verdict.

Providers that reach a tier

32 of the 320 recorded adopters demonstrably reach the core tier or better. The 24 below link to their catalog pages; the registry and matrix carry the rest.

ActivTrakAmerican Express Global Business TravelAmplitudeAPIs.io Engineering PlatformAuthenticxBeyond IdentityCventCvent Event CloudCvent RegistrationCyberArk IdentityDataStaxEnvianceFactsetGitHubHugging Face TransformersInductive AutomationKiteworksLightdashMaltOpenMetadataReclaim.aiRingCentralRiotSAP BI Tools

Artifacts

Everything this standard publishes. All of it is generated from the profile, so a re-measurement moves every artifact together.

Source

OriginatorIETF
Upstream licenceIETF Trust. RFCs may be described, quoted and implemented freely; this profile quotes normative language with its section and does not reproduce the documents.
API Commonshttps://apicommons.org/standards/identity/ · https://github.com/api-commons/identity

← All standards from practice