Sign in with your company's identity provider.
Single sign-on and SCIM are planned for Release 2. Your identity provider decides who gets in, and removing someone there ends their Hopwire sessions.
What you get
SAML 2.0 and OIDC
Single sign-on per account with verified domains and a default role for new users.
Enforce SSO
Require members of your verified domains to sign in through SSO.
SCIM provisioning
Create, remove and map users to roles from your directory. Removal ends active sessions.
MFA still counts
Hopwire trusts your identity provider's MFA only when it is asserted and you opt in; otherwise it asks for its own.
No lockouts
Break-glass owner accounts keep their own MFA and are exempt from SSO enforcement.
Questions
Can I use SSO in the beta?
No. Beta accounts sign in with mandatory MFA. SSO is planned for Release 2.
Are SSO changes audited?
Yes. They need a fresh sign-in check and are recorded in the audit log.
What happens to resources a removed user created?
They stay. Only the user's sessions and personal tokens are revoked.
Related
- Security controlsAvailableOTP fraud limits, India-only destinations, emergency stop, mandatory MFA and roles for your team.
- SecurityAvailableData hosted in Mumbai with Hyderabad backups, encryption for secrets and codes, mandatory MFA, scoped keys and audit trails.
- OperationsAvailableFor operations, support and compliance teams: find any message, see its full trail, manage templates and prove what was sent.
Start with the beta.
Hopwire is free during the invite-only beta. Tell us what you send and we will reply by email.