Skip to main content
Open Settings → General and click Manage members. The General settings page, with the Manage members button on the Members row

Set Up SSO

In the window that opens, pick Security in the sidebar, then click Configure under SSO and follow the steps for your identity provider. The Security tab, with Configure buttons for SSO and Directory Sync Once it’s on, anyone whose email matches your domain signs in through your identity provider. You’ll need admin access to your identity provider, and to your domain’s DNS to add a TXT record that proves you own it.

Supported Providers

  • Okta Workforce
  • Microsoft Entra ID
  • Google Workspace
  • Any other SAML provider
  • Any OIDC provider
Clerk keeps the up-to-date list.

Sync Members From Your Directory

Directory Sync keeps your Decimal members in sync with your identity provider. It works with any of the providers above that support SCIM 2.0. You can turn it on once SSO is set up.