Single sign-on
Configure governed SAML 2.0 and OpenID Connect providers with verified domains and just-in-time provisioning.
Administration
Federated authentication and governed workforce lifecycle synchronization.
Configure governed SAML 2.0 and OpenID Connect providers with verified domains and just-in-time provisioning.
Connect Microsoft Entra ID, Okta, Google Workspace, or a generic SCIM directory.
Map external identity attributes and groups to AchieveX users, roles, departments, and teams.
Review synchronization runs, create/update/suspend actions, failures, and correlation identifiers.
Secrets are write-only, tenant scoped, fingerprinted, and must be backed by KMS in production. Preview runs are side-effect free. Deprovisioning is disabled by default.