SSO and SCIM

Plain now supports SAML Single Sign-On and SCIM directory sync. Your team signs into Plain with Okta, Azure AD, Google Workspace, OneLogin, or any SAML-compatible provider. Once enabled, SSO becomes the required authentication method for your workspace.
SCIM keeps user access in sync with your identity provider. New team members get access on day one. When someone leaves, it's revoked automatically. Your IdP groups map to Plain roles so permissions stay consistent without manual setup.
Available on the Frontier plan. To get started, head to Settings → SSO. Full details in our help center.
Designed, built and written by

Jesús Hernández
Engineering

Jordan Drake
Engineering