Launch Week 02 wrapped — explore all five launches

Single-Sign-On (SSO)

Configure SSO for secure and streamlined authentication across your organization.

Included on the Enterprise plan. Book a demo, opens in a new tab. Included on the Team plan. Not included on the Starter plan. Not included on the Free plan.

SSO lets your team sign in to Confident AI using their existing company accounts. Currently, self-serve SSO setup supports SAML only.

If you need a different protocol, reach out to support@confident-ai.com.

Setting Up SAML SSO

Head to Organization SettingsSettingsSSO tab to get started.

  1. Select Protocol

    Choose SAML from the dropdown.
  2. Enter Domain

    Enter your company's email domain (e.g., yourcompany.com). SSO will apply to users with email addresses on this domain—subdomains aren't included.

  3. Configure your Identity Provider

    Set up Confident AI as an application in your IdP (Okta, Azure AD, Google Workspace, etc.). Copy these values into your IdP:

    • Assertion Consumer Service (ACS) URL
    • Entity ID
    • Name ID Format (Email Address)
  4. Provide your IdP metadata

    After setting up the application in your IdP, it'll give you metadata to enter here:

    • Single Sign-On URL
    • Issuer/Entity ID
    • Certificate
  5. Verify Domain and Activate SSO

    Add the provided TXT record to your DNS settings to verify you own the domain. Once verified, SSO goes live.

After SSO is activated, users with matching email domains will be able to sign in through your identity provider.

Revoking SSO

If you need to disable SSO, head to Organization SettingsSettingsSSO tab and click Revoke SSO. Users will go back to signing in with their email and password. Note that this setup cannot be undone.

Rolling out across your org?Set up the controls your team needs before a wider rolloutTalk to us

Last updated on

Built byConfident AI