# JumpCloud

> Let the Coder read the users, devices, groups, and policies in your JumpCloud directory for access reviews and laptop checks. Read only. Coming soon.

Status: Coming soon

JumpCloud keeps your company's people, their logins, and their laptops in one directory. Once you connect it, the Coder can read who has an account, who has no MFA, which devices have not checked in, and which groups and policies apply, so access reviews and offboarding checklists start from the real list.

> [!SOON]
> The JumpCloud integration is Coming soon. This page describes how it will work. The integrations open at launch are GitHub, GitLab, and Bitbucket.

## Which assistants use it

| Assistant | Status |
| --- | --- |
| [Coder](/docs/personas/coder) | Available |

It suits a Coder with the IT administrator role.

## What assistants can do

JumpCloud connects through its own hosted connector, and it is read only.

| Ability | How it runs |
| --- | --- |
| Read users, groups, and MFA status | Reads on its own |
| Read devices, policies, and command results | Reads on its own |
| Create, suspend, or delete a user, or reset MFA | Never run from chat |
| Lock, wipe, restart, or run a command on a device | Never run from chat |

## Setup (when it opens)

1. Sign in to the JumpCloud Admin Portal as an administrator whose role only reads.
2. Open your account name, open the page for keys, and copy the key. It starts with `jca_`.
3. Open [Integrations](https://stellarfirm.ai/app/integrations) in StellarFirm and pick JumpCloud.
4. Paste the key, switch on the live option, and press Connect.

## Permissions

- The key acts with the permissions of the administrator who made it. Make it as a read-only administrator, so even a mistake cannot change anything.
- Nothing here waits for an Approve because nothing here changes data. Suspending a user or wiping a laptop is something you do in JumpCloud.
- JumpCloud keys expire after 90 days unless you choose otherwise. Make a new one when it lapses, and revoke it in JumpCloud to cut access.

## Good to know

- Accounts in JumpCloud's Europe or India region connect to that region's address; the setup screen will say how when it opens.
- A multi-tenant portal for managed service providers is not supported yet; connect one organization's key.

## Prompts to try

```prompt title="MFA gaps"
Coder, list the users in JumpCloud without MFA and the devices that have not checked in for two weeks. Read only.
```

```prompt title="Offboarding check"
Coder, [name] left today. Read their account, groups, and devices in JumpCloud and give me the offboarding checklist with what is still open. Do not change anything.
```

---

Source: https://stellarfirm.ai/docs/integrations/jumpcloud
