SAML connection, domain verification, and required company login for the org.
Identity
SSO
Protocol
SAML
Domains
Verified
Login
SSO required
Users authenticate through the identity provider.
Domain
company.com
Domain maps users to the organization.
Setup
Link generated
Admin completes provider configuration.
New capabilities
Require organization users to sign in through your identity provider, so AI access follows the same onboarding and offboarding as the rest of your tools.
Use self-provisioning domains so users from an approved company domain land in the correct organization automatically during sign-in.
Generate a setup link your identity provider admin can use to complete SAML configuration, instead of trading metadata files back and forth.
Who Concentrate is designed for
If AI access uses a separate login from the rest of the company, offboarding and access reviews break down. SSO ties Concentrate to the same identity provider as your other tools, and verified domains route new users into the correct organization.
Require company login, enforce MFA through your IdP, and revoke AI access when employment ends.
Use self-provisioning domains so users from approved company email domains land in the right org during first sign-in.
Share a setup link so your identity admin completes SAML without a long metadata exchange.
SSO identifies the user; RBAC decides what they can manage after they sign in.
Feature basics