Stripe | Financial Infrastructure to Grow Your Revenue

Stripe | Financial Infrastructure to Grow Your Revenue

4466 articles

Single sign-on (SSO)


Single sign-on (SSO)

Configure authentication for access to the Stripe Dashboard with an identity provider.

Single sign-on (SSO) allows your team to sign in through an identity provider (IdP) using one set of credentials to access multiple applications, such as Stripe. Enabling SSO for your team increases security and centralizes how they sign in to Stripe. Stripe supports Security Assertion Markup Language (SAML) 2.0, so your IdP can manage the creation of user accounts (team members), as well as authentication and authorization during sign-in. Any identity provider that supports SAML 2.0 works with Stripe.

Security incidents

If your identity provider (IdP) is compromised, unauthorized parties could access your Stripe account. You’re responsible for mitigating your exposure to security incidents by evaluating your security needs and implementing the necessary security protocols and controls.

Set up SSO with an identity provider

Okta

Learn how to set up single sign-on in the Dashboard with Okta.

Entra ID

Learn how to set up single sign-on in the Dashboard with Entra ID (formerly known as Azure AD).

Google Workspace

Learn how to set up single sign-on in the Dashboard with Google Workspace.

OneLogin

Learn how to set up single sign-on in the Dashboard with OneLogin.

Other

Learn how to set up single sign-on in the Dashboard with a different identity provider.

Additional resources

Consolidate SSO

Learn how to consolidate single sign-on (SSO) settings across multiple accounts.

Troubleshoot SSO

Learn how to resolve failed configuration checks when setting up SSO.

Supported features

Stripe supports the following SSO features:

  • SSO configuration options : Configure Stripe accounts to either mandate SSO for all users or allow sign-in using SSO or email and password.
  • Just-in-time account creation : Automatically create new Stripe accounts for users without existing access upon their first SSO sign-in.
  • Granular Dashboard roles : Assign granular user roles through your IdP or directly in the Stripe Dashboard.
  • IdP-initiated SSO : Authenticate directly from an IdP’s website or browser extension.
  • Service provider-initiated SSO : Initiate SSO sign-in directly from the Stripe sign-in page .
  • System for Cross-domain Identity Management (the related setting) : the related setting is a protocol that an IdP can use to synchronize user identity lifecycle processes (for example, provisioning and deprovisioning access, and populating user details) with the service provider, such as Stripe.

Limitations

Stripe doesn’t support the following SSO features:

  • User deletion in SAML : When users aren’t managed through the related setting, Stripe doesn’t receive immediate notifications if user access is revoked in the IdP. If users attempt to sign in through SSO after their session expires, Stripe revokes their access. To remove access immediately, you can delete users from your Team settings or enable the related setting user provisioning.
Last verified 2026-09-24

Is this helpful?