Feature
SSO / SAML
Require sign-in through your identity provider, verify company domains, and provision users into the right organization automatically.
SAML connection, domain verification, and required company login for the org.
Identity
SSO
Protocol
SAML
Domains
Verified
Login
SSO required
Users authenticate through the identity provider.
Domain
company.com
Domain maps users to the organization.
Setup
Link generated
Admin completes provider configuration.
New capabilities
What your team gains with Concentrate
One company login for AI access
Require organization users to sign in through your identity provider, so AI access follows the same onboarding and offboarding as the rest of your tools.
Verified domains, right org
Use self-provisioning domains so users from an approved company domain land in the correct organization automatically during sign-in.
Hand setup to your IdP admin
Generate a setup link your identity provider admin can use to complete SAML configuration, instead of trading metadata files back and forth.
Who Concentrate is designed for
Why SSO belongs on the AI platform — not beside it
If AI access uses a separate login from the rest of the company, offboarding and access reviews break down. SSO ties Concentrate to the same identity provider as your other tools, and verified domains route new users into the correct organization.
IT and security
Require company login, enforce MFA through your IdP, and revoke AI access when employment ends.
Growing organizations
Use self-provisioning domains so users from approved company email domains land in the right org during first sign-in.
IdP administrators
Share a setup link so your identity admin completes SAML without a long metadata exchange.
Works with RBAC
SSO identifies the user; RBAC decides what they can manage after they sign in.
Feature basics