SSO and SCIM
Google and Microsoft sign-in for everyone; SAML SSO and SCIM provisioning on the Business plan.
Google and Microsoft sign-in: every plan · SAML SSO and SCIM: Business and Enterprise
Google and Microsoft sign-in
Everyone can sign in with Google, Microsoft (work, school or personal accounts) or a magic link emailed to them, which expires after 15 minutes. Accounts with the same email are linked automatically, so a person who joined with a magic link can later use Google.
SAML SSO
On Business and Enterprise, require sign-in through your identity provider (Okta, Microsoft Entra ID, Google Workspace, JumpCloud or any SAML 2.0 IdP). Setup is assisted today:
- Email support@paperbeam.ai from an owner account with your email domain(s).
- We send you the ACS URL and entity ID for a new SAML app in your IdP.
- Send us your IdP metadata URL (or XML). We verify domain ownership with a DNS TXT record.
- We test sign-in with you, then enforce SSO for your domains.
SCIM provisioning and directory sync
SCIM 2.0 provisioning (create, update and deactivate members from your IdP) and directory sync (map IdP groups to department editions) are included on Business. They are in development. Until they ship, manage members at Settings›Team and recipients with a CSV import.