Enterprise Authentication

Single Sign-On (SSO)

Streamline user authentication with SAML 2.0 integration. Let your employees log in using your company's identity provider.

Why SSO?

Single Sign-On allows your employees to access Shortcut using your company's existing identity provider. No more managing separate passwords or onboarding flows—users log in through your corporate authentication system.

Better Security

Centralized access control and MFA enforcement through your IdP

Faster Onboarding

New employees get instant access through existing credentials

Easy Offboarding

Revoke access instantly when employees leave your organization

How It Works

  1. 1Team admin configures SSO in Shortcut with your IdP metadata
  2. 2Users enter their email on the Shortcut login page
  3. 3Shortcut redirects to your company's identity provider
  4. 4User authenticates through your IdP (with MFA if configured)
  5. 5User is redirected back to Shortcut and automatically logged in
  6. 6First-time users are automatically provisioned in your team

Protocol: We use SAML 2.0, the industry-standard protocol for enterprise SSO integration.

Supported Identity Providers

Okta

Okta

Industry-leading identity platform with robust SAML 2.0 support.

  • SAML 2.0 app integration
  • Group-based provisioning
  • MFA enforcement
Microsoft Entra ID

Microsoft Entra ID

Microsoft's cloud-based identity and access management service.

  • Enterprise application gallery
  • Conditional access policies
  • Azure AD Premium features
Google Workspace

Google Workspace

Google's enterprise productivity suite with SAML SSO capabilities.

  • Custom SAML applications
  • 2-Step Verification
  • Organization unit controls

Other SAML 2.0 Providers

Any identity provider that supports SAML 2.0 protocol.

  • OneLogin, Auth0, Ping Identity
  • JumpCloud, Duo Security
  • Custom SAML implementations

Need help setting up SSO? View our detailed step-by-step guides for each provider.

View guides

Enterprise SSO Features

Automatic User Provisioning

First-time SSO users are automatically added to your team workspace with the appropriate permissions.

Multiple Domain Support

Configure SSO for multiple email domains, perfect for organizations with multiple brands or subsidiaries.

Just-In-Time (JIT) Access

Users are provisioned on their first login—no need to pre-create accounts in Shortcut.

Audit Logs

Track all SSO authentication events and user provisioning activities for compliance.

Setup Overview

After purchasing an enterprise plan, team admins can configure SSO from the Security settings:

  1. 1.Create a SAML 2.0 application in your identity provider
  2. 2.Copy the ACS URL and Entity ID from Shortcut's admin panel
  3. 3.Configure attribute mappings (email, name, etc.)
  4. 4.Copy your IdP's metadata URL or certificate to Shortcut
  5. 5.Test the integration with a test user
  6. 6.Add your company domain(s) to enable SSO for all users

Ready to get started?

Contact our enterprise sales team to learn more about SSO and how it can streamline authentication for your organization.