Single Sign-On (SSO)

Discover tips for improving your productivity and achieving your goals with these simple strategies.

Updated at December 13th, 2025

Overview

Vionlabs integrates Single Sign-On (SSO) using WorkOS, a secure and enterprise-grade authentication layer that connects our platform with a wide range of corporate identity providers (IdPs).
This integration enables enterprise customers to use their existing company credentials to access Vionlabs systems, ensuring both ease of use and compliance with security standards.

WorkOS serves as a bridge between Vionlabs and the customer’s Identity Provider. Instead of maintaining separate integrations for each IdP, WorkOS provides a unified interface that supports both SAML 2.0 and OpenID Connect (OIDC) protocols.

Benefits

  • Enterprise-ready authentication with minimal configuration effort
  • Centralized access control managed by the customer’s IT department
  • Reduced friction for users – login using existing company credentials
  • Secure and compliant – aligned with industry standards for SAML and OIDC

Supported SSO Providers

WorkOS supports any Identity Provider (IdP) that implements SAML 2.0 or OIDC, covering nearly all enterprise and cloud identity systems.

Commonly Supported Providers

Category Examples
Enterprise SAML Providers Okta, Microsoft Entra ID (Azure AD), Google Workspace, OneLogin, Ping Identity, Keycloak, ForgeRock, JumpCloud, ADFS
OIDC / OAuth Providers Google OIDC, Microsoft OIDC, Okta OIDC, GitHub, Apple
Custom IdPs Any IdP supporting SAML 2.0 or OIDC (including on-premise or self-hosted solutions)

How It Works

  1. User attempts login to a Vionlabs application.
  2. WorkOS determines the correct SSO connection based on the user’s email domain or connection ID.
  3. The user authenticates via their company’s Identity Provider.
  4. WorkOS verifies the response and returns standardized user information (email, name, groups) to Vionlabs.
  5. Vionlabs creates or updates the session and grants access according to the assigned permissions.

 

Security & Compliance

  • All SSO communications are encrypted (HTTPS/TLS).
  • No credentials are stored by Vionlabs; authentication is fully delegated to the customer’s IdP via WorkOS.
  • The setup complies with GDPR and enterprise identity management requirements.