Skip to main content

Using Google Workspace service accounts to roll out Reclaim to your enterprise

Reclaim leverages "service accounts" in Google Workspace to help with large-scale enterprise deployments. Here's how to set it up.

Note: This doc and workflow for setting up Google Workspace service accounts is designed for teams on our Enterprise plan who are implementing Reclaim across a portion or all of their company in conjunction with SSO and SCIM. Please contact support for assistance or questions.

Service accounts allow Google Workspace administrators to give Reclaim permissions at a workspace level and automatically onboard users leveraging our API. This document will cover what a service account is, how to set one up for use with Reclaim, and get you prepped to start onboarding your teams to Reclaim.

What is a service account in Google Workspace?

A service account is used in Google Workspace for "domain-wide delegation", and allows a Google Admin to give access to their user’s calendars at a domain level to Reclaim. This makes it so users can be onboarded to Reclaim platform without having to explicitly grant access themselves.

How to set up a service account to onboard Reclaim users

  1. Navigate to Security -> Access and data control -> API Controls

  2. Click on “Manage Domain Wide Delegation”

Click "Add New" on the "API Clients" heading:

In the "Add a new client ID" dialog, enter the following information:

  • Client ID: 106399530826539972793

  • Minimal scopes required:

    https://www.googleapis.com/auth/calendar,https://www.googleapis.com/auth/userinfo.profile,https://www.googleapis.com/auth/userinfo.email,openid

  • Recommended scopes (this add support for tasks, directory and contacts):

    https://www.googleapis.com/auth/calendar,https://www.googleapis.com/auth/userinfo.profile,https://www.googleapis.com/auth/userinfo.email,openid,https://www.googleapis.com/auth/tasks,https://www.googleapis.com/auth/contacts.readonly,https://www.googleapis.com/auth/directory.readonly,https://www.googleapis.com/auth/contacts.other.readonly,https://www.googleapis.com/auth/admin.directory.resource.calendar.readonly

Once the Service Account is in place, reach out to support for assistance with gaining access to the Reclaim API and provisioning new users / calendars using our SCIM and SSO integrations. You will need to be an administrator of a Reclaim team in order to use the API.

Did this answer your question?