Available on: the Enterprise planFind it in: Settings in the organization name menu at the top left of the screen > Organization > Enterprise SetupRequired role: Admin or custom
Supported protocols
Profound supports multiple protocols for enterprise SSO, including Security Assertion Markup Language (SAML) and OpenID Connect (OIDC). Setup is tailored to your IdP, and custom SAML and OIDC connections are available if your provider isn’t among the commonly supported options.Domain matching and subdomain support
Authenticating with SSO requires the user’s email domain to match the exact domain the connection is configured with. For example, a user with the email addressjohn-smith@tryprofound.com can use SSO only with the tryprofound.com domain.
Subdomains (like dev.tryprofound.com) cannot use the same SSO connection as root domains (like tryprofound.com), so each subdomain needs its own connection.
Profound uses your verified domains to confirm that a user signing in belongs to your organization. Learn more about verifying domains in the Configure SSO guide.