Integrations

Connect your stack in an afternoon. Keep your data in your control.

schoolOS doesn't replace your stack. It connects to it. Sign-in, device management, knowledge, and rostering all draw on the systems your district already trusts.

Every integration is one click. Scoped OAuth consent, read-only by default, and no API keys to manage.

Google Workspace
Microsoft Entra ID
ClassLink
Google Devices
Jamf Pro
Microsoft Intune
Mosyle
Zendesk
Freshworks
Google Drive
Microsoft OneDrive
AuthenticationMDMKnowledgeRostering

Authentication

3 integrations
How staff and students get into schoolOS.

Nobody in a district needs another password. Staff and students sign in to schoolOS with the account they already use for everything else, which means adoption on day one and no credential for the help desk to reset at 7:40 in the morning. Identity stays where you already manage it.

Google Workspace

Sign in with a district Google account.

  • Available to every district, no setup required
  • Links to an existing schoolOS account by email address

Microsoft Entra ID

Sign in with a district Microsoft or Azure AD account.

  • Available to every district, no setup required
  • Handles the several places Microsoft puts an email address

ClassLink SSO

One-click sign-in from a district's ClassLink LaunchPad.

  • Staff and students sign in with the ClassLink account they already have
  • Launches from the LaunchPad tile, not only from our login page
  • Matches people by their OneRoster identifier, so a rostered district connects cleanly
  • Appears only for districts that turn it on, on their own subdomain

MDM

4 integrations
The command and control center for all of your assets.

Most districts run more than one MDM: Jamf for the Macs, Google for the Chromebooks, Intune for whatever Windows is left. None of them agree on what a device is, and none of them know who's holding it. schoolOS connects to each one, pulls every device into a single asset record, and pushes your changes back out. Lock, wipe, or deprovision from the asset record instead of from three consoles.

Jamf Pro

Apple device management for computers and mobile devices, syncing both ways.

  • Computers and mobile devices, with their full metadata
  • Write-back pushes schoolOS field values into Jamf, not just reads out of it
  • Lock, restart, wipe, deprovision and recovery lock, each checked against what the device can actually do
  • Per-field push, pull or off, with arrows showing which way each field moves
  • Runs nightly, or on demand

Google Devices

Chromebooks and other Google-managed devices from the Admin console.

  • Chromebook sync with organizational unit and enrollment detail
  • Disable, deprovision and delete, from the asset record or a workflow
  • The same field-mapping screen as Jamf, driven by a Google field catalogue
  • Runs nightly, or on demand

Microsoft Intune

Windows, iOS and Android devices managed through Intune.

  • Cross-platform device sync via Microsoft Graph
  • Catalogue-driven field mapping, at parity with Jamf and Google
  • Compliance and enrollment state carried onto the asset record

Mosyle

Apple device management for districts on Mosyle Manager or Business.

  • Device sync through Mosyle's token-header API
  • Field catalogue mapped to the same asset fields as every other provider

Knowledge

5 sources
Bring Your Own Knowledge.

An AI agent is only as good as what it knows, and what your district knows is scattered. The answer to “how do I request a sub” is in a Zendesk article. The device damage policy is a PDF in a shared Drive folder. The board's acceptable use policy is a page on the website nobody has opened since 2019. schoolOS indexes all of it, keeps it in sync as it changes, and cites the source on every answer, so people get your district's answer instead of the internet's.

Deep Web Crawl

Your district's own websites as a knowledge source.

  • Crawls public pages: policies, handbooks, department pages, board documents
  • Structure-aware chunking, so an answer comes back with its heading and context intact
  • Re-crawls on a schedule the district sets, and only reindexes pages that actually changed
  • Every answer links back to the page it came from
  • Auto-crawls beyond your core site: transportation pages, board document portals, and school menu services

Zendesk

Help Center articles as a knowledge source.

  • Categories, sections and articles, kept in sync
  • Connects from Knowledge Sources without leaving the page
  • Ticket sync is planned, not built

Freshworks

Freshdesk solution articles as a knowledge source.

  • Solution categories, folders and articles
  • Shares the Help Center tab with Zendesk. Pick one, connect, done
  • Ticket sync is planned, not built

Google Drive

Shared folders and documents pulled into the knowledge base.

  • Folder-scoped sync, so a district shares only what they mean to
  • Documents indexed for the co-pilot to cite

Microsoft OneDrive

Files and folders from OneDrive and SharePoint.

  • The same folder-scoped model as Google Drive
  • Documents indexed for the co-pilot to cite

Rostering

Works with 30+ SIS
Students, staff and guardians from your student information system.

Rostering is what turns an asset record into something you can act on. A device stops being a serial number and becomes the Chromebook assigned to a fourth grader at Lincoln, in Ms. Alvarez's homeroom, whose guardian should get the damage notice. Every ticket, every assignment, every workflow leans on knowing who's who. So schoolOS takes the roster however your district can give it, from a CSV someone drags into a browser to a live API, and keeps it current overnight without anyone thinking about it again.

schoolOS supports virtually every SIS
Aeries
Alma
ASCENDER / TxEIS
Aspen (Follett)
Aspire
Blackbaud
ClassLink Roster Server
Clever
eSchoolData
eSchooling
eSchoolPlus (PowerSchool)
FACTS SIS (RenWeb)
Focus School Software
Genesis
Gradelink
Illuminate
Infinite Campus
JCampus (EdGear)
JMC
PowerSchool SIS
ProgressBook
Q / MiStar (Aequitas)
Rediker
Sapphire
SchoolTool
Skyward Qmlativ
Skyward SMS 2.0
Sycamore
Synergy (Edupoint)
Tyler SIS
Veracross
WVEIS (West Virginia)

Roster Import

One screen for every way a roster can reach schoolOS, from a hand-uploaded CSV to a live API.

  • Four methods: manual CSV, flat CSV over SFTP, OneRoster bundle over SFTP, or the OneRoster API
  • 25 student information systems, each narrowing the methods offered and carrying its own quirks
  • OneRoster 1.1 and 1.2, over OAuth 2, OAuth 1 or a static token
  • Delta sync where the vendor reports change dates, full sync where they do not
  • Runs nightly on a schedule the district sets

ClassLink Roster Server

Rosters through ClassLink's proxy, which normalizes whatever SIS sits behind it.

  • Nothing for a district to enter — they grant schoolOS access in ClassLink and pick themselves from a list
  • Honors ClassLink's own guidance: 10,000-record pages, backoff on rate limits
  • Abandons a pull when the district's SIS writes mid-read, rather than importing a torn snapshot

All product names, logos, and brands are property of their respective owners and are used for identification purposes only.

One-click integrations

Read-only by default. Least-privilege by design.

If you can click through an OAuth consent screen, you can finish the integration. No middleware, no CSV exports, no consultant. And because every connection is scoped, your data stays in your control.

Scoped OAuth
Only the permissions it uses

Each integration requests only the scopes it actually uses, and you see exactly which ones before you approve.

Read-only by default
Write access is opt-in

Connections start read-only. Write access is enabled per connection, and only when you turn it on.

Revoke anytime
No support ticket required

Credentials are never stored in plaintext, and you can revoke access from your own admin console at any time.

Built for FERPA
Tenant-isolated by design

Student records stay in encrypted, tenant-isolated storage, from the data layer up.

Fully auditable
Every sync is logged

What was pulled, when, and by which connection. Every sync leaves an audit trail you can inspect.

Standard patterns
No password handoffs

Delegated Google Admin flows and app-only Intune credentials, the same patterns your existing vendors use. No shared service accounts.

Don't see a system you run?

We build new connections with design partner districts, in weeks, not quarters.

Tell us what you run