You'll need to elaborate further, describing your use case in more details. What protocols those RP will use while requesting users' data from Gluu? SAML, OpenID Connect, CAS, may be a combination of those? In case of OIDC, you have an option to control what scopes each client (representing RP) will be allowed to request. In case of SAML/CAS answer may not be that straightforward.