SSO & SAML
Enterprise single sign-on with SAML 2.0 so your team accesses AEO Platform through your existing identity provider.
SSO & SAML in detail
Configuration requires exchanging metadata between AEO Platform and your identity provider. In the platform's admin panel, you download the Service Provider metadata (entity ID, ACS URL, and signing certificate) and upload it to your IdP. You then copy the IdP metadata (SSO URL, entity ID, and signing certificate) back into the platform. The entire process typically takes 15 to 30 minutes for an IT administrator familiar with SAML configuration.
Once configured, users are redirected to your IdP login page when they access AEO Platform. After authentication, they are returned to the platform with an active session. The platform maps IdP user attributes (email, name, groups) to platform roles and permissions, so you can use IdP group membership to control who has admin access, who has editor access, and who has read-only access.
SCIM provisioning is configured separately and automates user lifecycle management. When a user is added to the designated group in your IdP, a platform account is automatically created with the appropriate role. When the user is removed from the group, their account is deactivated. SCIM sync runs in near real-time, ensuring the platform's user roster always matches your IdP.
Why SSO & SAML matters
Authenticate via your existing IdP — Okta, Azure AD, Google Workspace, or any SAML 2.0 provider
Inherit organisational security policies including MFA and conditional access
Automatically deprovision access when employees leave the organisation
Map IdP groups to platform roles for centralised permission management
Automate user provisioning and deprovisioning with SCIM
When to use SSO & SAML
SSO & SAML FAQ
Explore more features
REST API & Webhooks
reportingProgrammatic access to all platform data and real-time event notifications for any system in your stack.
Shareable Dashboards
reportingGenerate public links to real-time dashboards so stakeholders see always-current AI visibility data without needing a login.
Team Workspaces
enterpriseManage multiple brands, clients, and teams under one account with per-workspace billing, permissions, and reporting.
Start with the pages and proof that AI can actually use
Run the free audit to see what blocks AI from citing your site. Use the trial when you need ongoing monitoring, attribution, prompt discovery, and team workflows after the first fixes are live.