Help Center

For Approvers & Admins

Configure single sign-on (SSO)

Connect an identity provider over SAML or OIDC so your organisation signs in with SSO.

  1. 1Open the SSO tab in the Admin Panel.
  2. 2Choose the protocol — SAML 2.0 or OIDC — and enter your identity provider's details (Okta, Azure AD, Google Workspace, and similar all work).
  3. 3Set the email domain the config applies to.
  4. 4Test the connection, then enable it.

Once enabled, anyone entering an email on that domain at the login page is detected and redirected to your identity provider automatically. First-time SSO sign-ins have an account provisioned on the spot.