- OIDC
- SAML 2.0
Configure SSO
Within your account, select the SSO page to enable SSO for users. If you haven’t enabled SSO for a domain yet, enter the email domains for enabling SSO in Prefect Cloud, and save it. Under Enabled Domains, select the domains from the Domains list, then select Generate Link. This step creates a link to configure SSO with your identity provider.
SAML
or Open ID Connect
instead.

Directory sync
Directory sync automatically provisions and de-provisions users for your account. Provisioned users are given basic “Member” roles and have access to any resources that role entails. When a user is unassigned from the Prefect Cloud application in your identity provider, they automatically lose access to Prefect Cloud resources. This allows your IT team to control access to Prefect Cloud without signing into the Prefect UI.SCIM Provisioning
Custom accounts have access to SCIM for user provisioning. The SSO tab provides access to enable SCIM provisioning.