SAP SuccessFactors for AI agents

SAP SuccessFactors is a cloud human capital management suite covering employee records, recruiting, performance goals, learning, and compensation for HR teams. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.

HR and recruitingSAMLMCP + RESTsuccessfactors.com
AUDIT LOG · SAP SUCCESSFACTORSPOLICY: acme-support
09:41:07 · claude · u_8f2read
sap_successfactors.list_users
List Users✓ allowed · 212ms
09:41:08 · claude · u_8f2read
sap_successfactors.get_picklist
Get Picklist✓ allowed · 164ms
09:41:09 · claude · u_8f2write
sap_successfactors.create_onboardee
Create Onboardee✓ approved · approved by user
09:41:12 · claude · u_8f2destructive
sap_successfactors.delete_nomination_position_talent_pool
Delete Nomination✕ blocked · policy: deny
EVERY SAP SUCCESSFACTORS CALL, ON THE RECORD
01 · USE CASES

What agents do in SAP SuccessFactors.

01

Look up an employee's background details

Reads background education or mobility records for an employee before an HR action is taken.

02

Create an onboarding record

Sets up a new onboardee profile so a new hire's onboarding tasks and paperwork can start.

03

Delete a nomination only after approval

Removes a successor nomination from the calibration process only once a manager confirms it.

02 · ACTIONS

64 SAP SuccessFactors actions, graded by risk.

Every SAP SuccessFactors action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.

read

53

Look things up. Allowed by default.

  • sap_successfactors.list_users
    List Users
  • sap_successfactors.get_picklist
    Get Picklist
  • sap_successfactors.get_position
    Get Position
  • sap_successfactors.get_fo_company
    Get FOCompany Records
  • sap_successfactors.get_work_order
    Get Work Order
  • sap_successfactors.get_fo_job_code
    Get Foundation Object Job Codes
  • sap_successfactors.get_fo_location
    Get Foundation Object Location
  • sap_successfactors.get_talent_pool
    Get Talent Pool
  • sap_successfactors.list_candidates
    List Candidates
  • sap_successfactors.list_per_person
    List Person Records
  • sap_successfactors.get_current_user
    Get Current User
  • sap_successfactors.get_fo_pay_group
    Get FOPayGroup
  • sap_successfactors.get_form_content
    Get Form Content
  • sap_successfactors.get_onb2_process
    Get Onboarding 2.0 Processes
  • sap_successfactors.get_per_personal
    Get Personal Information Records
  • sap_successfactors.get_employee_time
    Get Employee Time
+ 37 MORE

write

10

Create and change things. Allow, or ask the user first.

  • sap_successfactors.create_onboardee
    Create Onboardee
  • sap_successfactors.create_a_feedback_request
    Create a Feedback Request
  • sap_successfactors.create_learning_activities_bulk
    Create Learning Activities Bulk
  • sap_successfactors.create_update_successor_nomination
    Create or Update Successor Nomination
  • sap_successfactors.update_calibration_subject_ratings
    Update Calibration Subject Ratings
  • sap_successfactors.update_internal_username_new_hires_after
    Update Username Post Hiring
  • sap_successfactors.give_or_respond_feedback
    Give Feedback or Respond to Feedback Request
  • sap_successfactors.approve_calibration_session
    Approve Calibration Session
  • sap_successfactors.refresh_cdp_learning_metadata
    Refresh CDP Learning Metadata
  • sap_successfactors.refresh_metadata_cont_feedback_service
    Refresh Metadata for Continuous Feedback

destructive

1

Delete, cancel or archive. Ask first, or deny outright.

  • sap_successfactors.delete_nomination_position_talent_pool
    Delete Nomination
03 · HOW IT WORKS

SAP SuccessFactors in three steps.

  1. 01Your users connect SAP SuccessFactorsThey add their SAP SuccessFactors saml on Arc0 Connect, under your brand. It goes straight into the vault.
  2. 02You set the rulesReads run, writes like “create Onboardee” can wait for the user, and “delete Nomination” can be denied outright.
  3. 03Any agent can actYour agent calls SAP SuccessFactors through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
POLICY.TS
await arc0.policies.set('sap_successfactors', {
  read: 'allow',
  write: 'ask',        // create_onboardee
  destructive: 'deny',  // delete_nomination_position_talent_pool
})

# Claude Code: the same connection, one URL
$ claude mcp add --transport http arc0 \
    https://mcp.arc0.ai/u/u_8f2
04 · AUTH AND DATA

How SAP SuccessFactors connects.

Users add their SAP SuccessFactors saml on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

The same SAP SuccessFactors connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →

AUTH
SAML
CREDENTIALS
Per-tenant encrypted vault
MODEL SEES
Results only, never credentials
AUDIT LOG
Every call, on every plan
05 · WORKS WITH

Use SAP SuccessFactors from any agent.

Claude
ChatGPT
Cursor
Codex
VS Code
OpenAI Agents SDK
Claude Agent SDK
Vercel AI SDK
Mastra
LangGraph
07 · FAQ

SAP SuccessFactors and Arc0, answered.

Q01

Can I use SAP SuccessFactors with Claude, ChatGPT or Cursor?

Yes. Connect SAP SuccessFactors to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the SAP SuccessFactors actions you allow.

Q02

How do users connect SAP SuccessFactors?

Users add their SAP SuccessFactors saml on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

Q03

Which SAP SuccessFactors actions can my agent take?

64 in total: 53 read, 10 write and 1 destructive, such as “create Onboardee”. Your policies decide which of them each agent may call.

Q04

Can I stop my agent from deleting things in SAP SuccessFactors?

Yes. Actions like “delete Nomination” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.

Q05

Can my own backend call SAP SuccessFactors too?

Yes. The same SAP SuccessFactors connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.

Get started

Plug SAP SuccessFactors into your agent.

Your users connect SAP SuccessFactors once, under your brand. Your agent gets 64 actions behind your policies, with every call on the record.

Free to build · MCP + REST · Audit log on every plan