Rippling × NudgeWell

One-click roster sync from Rippling to NudgeWell.

Connect your Rippling account. Employee names, work emails, eligibility, and plan types flow into NudgeWell automatically — no CSV uploads, no broker ping-pong, no monthly reconciliation.

Read-only OAuth · Tokens encrypted at rest · HIPAA-adjacent data segregated

Connection Status

Not connected

Provider: Rippling

Last sync:

Active employees:

Connect
Rippling Gusto — Q4 2026 BambooHR — Q4 2026 ADP Workforce Now — Q1 2027

Benefits utilization breaks the moment your roster goes stale.

📤

Manual census uploads

HR re-exports a CSV from your HRIS once a quarter (or once a year). Every new hire falls through the cracks until the next export.

🪦

Ghost employees stay on the roster

Without a live sync, terminated employees remain enrolled until the next census — generating nudges, draining engagement, and risking PHI exposure.

🤝

Brokers play middle-man

Eligibility data lives with the broker. Every question, update, or correction requires a thread of emails.

⏱️

New hires lose their first 30 days

Day 1 FSA/HSA enrollment windows, preventive-care baselines, mental health EAP onboarding — all of it races the next scheduled sync.

Roster sync that runs itself — and stops the moment you tell it to.

01

One-click connect

HR clicks Connect Rippling. A Rippling admin approves read-only OAuth. Then NudgeWell pulls the active roster and runs the first sync immediately.

02

Automatic eligibility refresh

The sync pulls work email, employment status, FSA/HSA eligibility, plan types, and carrier. Enough to drive every nudge category without manual CSV edits.

03

Daily incremental sync

A daily 8:30 AM cron pulls the delta from Rippling. New hires get nudges the same morning. Terminated employees are deactivated, not deleted, preserving the audit trail.

04

On-demand sync

Bulk-action a major change from the dashboard. Useful right after open enrollment, M&A events, or acquisitions.

05

Encrypted tokens, isolated scopes

Access + refresh tokens are encrypted at rest with AES-256-GCM. NudgeWell reads only workers, benefits, and company data — never compensation, reviews, or surveys.

06

One-click disconnect

Disconnect terminates the local connection immediately. Roster rows are preserved for the audit trail. No nudges are sent. No broker follow-up needed.

Frequently Asked Questions

Do I need a Rippling admin to connect the integration?

Yes — the OAuth consent screen requires a Rippling admin to grant NudgeWell read-only access to your roster. Once approved, anyone on your HR team can manage the connection from the NudgeWell portal.

What fields does NudgeWell pull from Rippling?

Worker name, work email, employment status, department, manager email, home ZIP code, FSA/HSA eligibility, medical/dental/vision plan types, and insurance carrier. The sync does not read compensation, performance reviews, or any other sensitive Rippling data.

How often does the roster sync?

Once a day automatically, at 8:30 AM ET. You can also trigger an on-demand sync from the dashboard — useful after onboarding a new hire who needs nudges sooner.

What happens when someone leaves the company?

Rippling flags a worker's employment status as 'terminated' or 'on_leave'. On the next sync, NudgeWell marks that employee's roster row as deactivated. Their record is preserved (required audit trail under HIPAA-adjacent retention rules), but no new nudges are sent and the row never appears in active-roster reports.

Is the data HIPAA-compliant?

OAuth tokens are encrypted at rest (AES-256-GCM). The eligibility data we pull is not PHI under HIPAA — it's the same administrative data brokers already share on a census file. HR data is segregated from any member-level PHI and access is logged.

Can we disconnect Rippling later?

Yes — disconnect is one click in the portal. Rippling does not currently expose a public revocation endpoint, so we mark the connection as revoked locally. Existing roster rows are preserved for audit; new nudges stop immediately.

Does NudgeWell sync with other HRIS systems?

Rippling is the first adapter, but the underlying connector (services/hris/) is provider-agnostic — Gusto, BambooHR, and ADP Workforce Now are slotted into the same pattern. Each new adapter is a configuration, not a refactor.