I have an Azure AD enterprise connection already setup and it working great. When I look at my user raw json data I also see that it has synced my Azure AD groups into my profile.

How do I get these groups into an id_token with an Action? I’ve seen some old answers using Rules but nothing with Actions.

I’ve tried a ton of things already and can’t seem to figure it out.


Unfortunately, it is not possible to get groups in Actions. Instead, you must use Rules to get the top-level IdP attributes.

See How to access user.groups in Actions? for more information.

Thank you for the quick reply. I got it working with Rules.

