SSO and SCIM for AI
SSO (single sign-on) and SCIM (System for Cross-domain Identity Management) are the identity-provider integrations that let an enterprise manage AI workspace access through its existing IdP — Okta, Azure AD, Google Workspace, OneLogin.
SSO means users sign in to the AI workspace through the company IdP, so password policy, MFA, and conditional access all flow from there. Deprovisioning a user in the IdP removes their AI access immediately.
SCIM automates user and group lifecycle — provisioning, role assignment, deactivation — between the IdP and the AI workspace, so the workspace stays in sync as people join, change roles, and leave.
Backplain ships SSO and SCIM at the Business tier and above, with role-based access control and per-group AI Firewall policy.