Skip to content

SSO overview

NameDrop supports both SAML 2.0 and OpenID Connect (OIDC) single sign-on for Corporate Plan customers.

  • SAML 2.0 — works with major IdPs (Okta, Azure AD, Google Workspace, OneLogin, JumpCloud, etc.). See SAML setup.
  • OpenID Connect (OIDC / OAuth 2.0) — for IdPs and platforms that prefer OIDC over SAML. Standard authorization-code flow with the usual openid, email, given_name, and family_name claims.
  • OTP (one-time passcode) — used alongside SSO for first-touch enrolment and account-recovery flows.

NameDrop uses AWS Cognito for authentication. The SSO config sits in Cognito on our side; from your identity provider’s perspective, NameDrop is a standard SAML 2.0 SP (Service Provider) or OIDC relying party.

  • SCIM provisioning — automated user provisioning/deprovisioning. Currently NameDrop relies on email-domain auto-detection (see Admin dashboard).

SSO setup is hands-on for now — NameDrop’s team works with your IdP admin during the initial Corporate Plan rollout. Reach out at hello@namedrop.io to start the conversation.