meshr / Platform / SSO & Identity
SSO & Identity

One login for everything.

Connect Google, Microsoft, GitHub, Apple, or any OIDC provider. Auto-provision users on first login, enforce SSO, and gate sign-ups by domain — all from one dashboard. SAML and SCIM are on the way.

  • OIDC sign-in — Google, Microsoft, GitHub, Apple
  • Any OpenID Connect provider — bring your own IdP
  • Auto-create users on first login
  • Enforce SSO and gate by email domain
OIDC · auto-provision
Supported today

Connect your OIDC provider in minutes.

meshr signs users in through OpenID Connect — the major social and work IdPs, plus any standards-compliant OIDC provider.

Google Workspace

Sign in with Google accounts. The most common path for teams on Workspace.

Microsoft

Sign in with Microsoft / Entra accounts over OIDC.

GitHub

OAuth sign-in for engineering teams already living in GitHub.

Apple

Sign in with Apple for teams that standardize on Apple IDs.

Generic OIDC

Any OpenID Connect provider — Keycloak, Auth0, and others. Bring your own IdP.

How it works

Three steps to unified identity.

1

Connect provider

Add your IdP credentials (client ID + secret) in the meshr dashboard.

2

Configure rules

Set the allowed email domain, enforce SSO, and enable auto-provisioning.

3

Users sign in

Team members authenticate via SSO. Accounts are created automatically on first login.

Identity controls

Tighten the front door.

The controls that decide who gets in — built into every login.

Enforce SSO

Disable password login entirely. Every user authenticates through your approved identity provider — no local credentials to leak.

Domain gating

Only allow sign-ups from approved email domains, so access is decided at the identity layer before anyone reaches the network.

Auto-provisioning

New users are created automatically on first SSO login. Approve the domain once — no per-person invite to send.

Enterprise identity Coming soon

SAML and SCIM are on the roadmap.

OIDC covers most teams today. For directories that need SAML or automated provisioning, here's what's coming — none of these are available yet.

Coming soon

SAML 2.0

Native SAML for IdPs that speak SAML rather than OIDC. On the roadmap — not available today.

Coming soon

Dedicated enterprise connectors

First-class Okta and Azure AD enterprise app connectors with guided setup. Planned; today these IdPs connect via generic OIDC where supported.

Coming soon

SCIM provisioning

Automatic user and group sync (create / update / deprovision) from your directory via SCIM. Planned — not available today.

Bring your identity provider.

OIDC SSO, auto-provisioning, and enforce-SSO are free while we're in beta. No credit card required.