👋
How can we help today?
Search for articles...
Enterprise SSO and access controls
Procright supports single sign-on (SSO) for enterprise teams, so your users sign in through your company’s identity provider instead of a separate Procright password.
Supported sign-in methods
SAML 2.0 — for enterprise identity providers such as Okta, Azure AD, and OneLogin.
Google — sign in with a Google Workspace account.
Magic link — passwordless sign-in through a one-time email link.
Enabling SSO
SSO is configured at the workspace level by an admin. Open workspace settings, go to Security, and choose your identity provider. You’ll be asked for metadata from your IdP (entity ID, certificate, SSO URL) and given Procright values to paste back into your IdP.
Once configured, users signing in with your company domain are routed through SSO automatically.
Access controls
Workspace roles (Owner, Admin, Editor, Viewer) determine what each member can do. Supplier invitation links are scoped to a single specification and can be cancelled at any time, without affecting workspace access.
Getting help
If you need help setting up SSO, contact us through the in-app support area. For enterprise plans, we can provide sample metadata and walk through the configuration together.