One login for everything.
Connect Google, Microsoft, GitHub, Apple, or any OIDC provider. Auto-provision users on first login, enforce SSO, and gate sign-ups by domain — all from one dashboard. SAML and SCIM are on the way.
- OIDC sign-in — Google, Microsoft, GitHub, Apple
- Any OpenID Connect provider — bring your own IdP
- Auto-create users on first login
- Enforce SSO and gate by email domain
Connect your OIDC provider in minutes.
meshr signs users in through OpenID Connect — the major social and work IdPs, plus any standards-compliant OIDC provider.
Google Workspace
Sign in with Google accounts. The most common path for teams on Workspace.
Microsoft
Sign in with Microsoft / Entra accounts over OIDC.
GitHub
OAuth sign-in for engineering teams already living in GitHub.
Apple
Sign in with Apple for teams that standardize on Apple IDs.
Generic OIDC
Any OpenID Connect provider — Keycloak, Auth0, and others. Bring your own IdP.
Three steps to unified identity.
Connect provider
Add your IdP credentials (client ID + secret) in the meshr dashboard.
Configure rules
Set the allowed email domain, enforce SSO, and enable auto-provisioning.
Users sign in
Team members authenticate via SSO. Accounts are created automatically on first login.
Tighten the front door.
The controls that decide who gets in — built into every login.
Enforce SSO
Disable password login entirely. Every user authenticates through your approved identity provider — no local credentials to leak.
Domain gating
Only allow sign-ups from approved email domains, so access is decided at the identity layer before anyone reaches the network.
Auto-provisioning
New users are created automatically on first SSO login. Approve the domain once — no per-person invite to send.
SAML and SCIM are on the roadmap.
OIDC covers most teams today. For directories that need SAML or automated provisioning, here's what's coming — none of these are available yet.
SAML 2.0
Native SAML for IdPs that speak SAML rather than OIDC. On the roadmap — not available today.
Dedicated enterprise connectors
First-class Okta and Azure AD enterprise app connectors with guided setup. Planned; today these IdPs connect via generic OIDC where supported.
SCIM provisioning
Automatic user and group sync (create / update / deprovision) from your directory via SCIM. Planned — not available today.
Bring your identity provider.
OIDC SSO, auto-provisioning, and enforce-SSO are free while we're in beta. No credit card required.