Use cases → Admin and governance
Synchronise a company-wide contact directory across tenants
Push updates to every user's Contacts so the address book matches the current directory, even in multi-tenant setups.
| Who it is for | IT teams responsible for keeping user address books up to date across multiple Google Workspace tenants. |
|---|---|
| APIs | Admin SDK, Gmail API |
| Typical scopes | admin.directory.user.readonly, contacts |
The problem
People expect their address book to have everyone in the organisation, but Google Contacts does not auto-populate from the directory. Manual import is quickly outdated, and cross-tenant contacts are never there unless you push them.
How it works
- Read the user directory from each tenant using the Admin SDK.
- Build a canonical contact list for each user, excluding themselves and any suppressed users.
- Use the Gmail API's Contacts scope to upsert contacts into every user’s personal Contacts.
- Track a per-contact sync key (e.g. in the Notes field) to support idempotency.
- Remove contacts that are no longer present in the directory.
What changes
Every user’s Contacts reflect the current directory, including cross-tenant colleagues, without manual intervention.
Questions people ask
Does this overwrite users’ own contacts?
Not if you namespace your sync contacts, e.g. using a unique label or Notes marker. Never assume users don't use their Contacts for personal entries.
How is deletion handled for departed users?
When a user leaves the directory, remove their contact from all synced address books on the next run. Be careful to only touch managed entries.
Want this built?
This is a pattern we run in production. We will set up the delegation and build this on top of it — $500 per hour, most of it working the same day.
Talk to us Or read the setup guideRelated use cases
Automate joiners, movers and leavers
Create accounts, set group membership, provision Drive and hand over mailboxes without a manual checklist.
Continuously verify your delegation still works
A scheduled probe that proves every API still answers under every tenant, before a customer finds out otherwise.
Reduce an over-broad delegation grant safely
Find out which scopes your automation genuinely uses, then cut the grant down to them.