Skip to main content

Troubleshooting Microsoft admin approval in Jump

Learn the steps to get Microsoft admin approval and create your Jump account.

Written by Bailey Schramm

Microsoft OAuth allows your firm to securely sign in to Jump using your Microsoft credentials.
​

If you choose to sign in to Jump using an existing Microsoft account, you may be prompted to get approval from your Microsoft admin before your Jump account can be accessed.


Problem: "Need admin approval" at log-in or sign-up

When you try to sign up or log in to Jump with Microsoft, you may see a pop-up screen that says “Need admin approval”.

In this case, Jump needs permission to access resources in your organization, which only an admin at your firm can grant.
​

For most firms, this approval needs to be granted once by a Microsoft (Entra) admin. After that, users should be able to log in normally.

Temporary workaround: While waiting for your admin to configure the consent workflow, you can log in to Jump using the "Sign in a different way" button.
​
This will send you a code that lets you log in temporarily until your admin grants the necessary permissions. Learn more about this workaround here: How to log in when you don’t use Microsoft 365 or Gmail.


How to get admin approval

1. Identify your Microsoft Entra admin

This is usually someone in IT or Security at your company.
​

2. Send your admin the Jump admin consent link

Ask your admin to open the admin consent link and approve Jump on behalf of the organization.

3. Have your admin click the blue “Grant admin consent” button

On the Microsoft permissions screen, your admin should click the blue “Grant admin consent” button to approve Jump. This is the correct and recommended way to grant access.
​



4. Sign in to Jump again

Once approval is complete, you should be able to sign in with Microsoft normally.
​

Note: By default, Jump asks Microsoft for the following permissions. Your Microsoft admin must allow these for the standard Outlook integration:

`openid`

Standard sign-in scope.

`email`

Allows Jump to see the email address used to link the Microsoft account.

`profile`

Allows Jump to see basic profile information for the signed-in user.

`offline_access`

Allows Jump to refresh authorization so users do not need to reconnect every time.

`User.Read`

Allows Jump to read the user's basic Microsoft profile.

`Calendars.ReadWrite`

Allows Jump to read calendar events and create or update calendar events when calendar write features are enabled.

`Mail.ReadWrite`

Allows Jump to read email context and create or update email drafts in Outlook.

`Mail.Send`

Allows Jump to send emails through Outlook when email sending is enabled.

For customers who do not need every Outlook feature, Jump can be configured to request narrower permissions:

`Calendars.Read`

Read-only calendar access. This can support calendar sync and Pre-Meeting Prep, but not calendar write features like writing notes back to events or Meeting Scheduler calendar writes.

`Mail.Read`

Read-only email access. This can support email context for Pre-Meeting Prep, but not creating drafts or sending emails.

Outlook email scopes can also be removed entirely if email features are not needed.

**Warning:** To use Meeting Scheduler with your Microsoft calendar, `Calendars.ReadWrite` must be approved. If your setup also uses Outlook email drafting or sending, `Mail.ReadWrite` and `Mail.Send` must also be approved.

To enable, disable, or reduce Microsoft permissions, please reach out to Jump support.

After permissions are changed, you may need to delete the existing Jump Enterprise App in Microsoft and reconnect Microsoft so the updated permissions are applied.
​

Warning: the three optional permissions must be approved in order to utilize the Meeting Scheduler feature with your Microsoft calendar.


What to do if the issue persists

If users are still seeing the admin approval screen after following the steps above:

  • Take a screenshot of the Permissions requested screen.

  • Confirm how many scopes the admin sees for Jump under Admin consent.

  • Email these details to [email protected] so our team can help investigate.
    ​


Need more help?


Related articles

Did this answer your question?