> ## Documentation Index
> Fetch the complete documentation index at: https://fillout.com/help/llms.txt
> Use this file to discover all available pages before exploring further.

# SAML Single Sign On

> Enable Single Sign-On (SSO) through various providers like Okta, Azure AD, and all SAML providers in Fillout to streamline user authentication and access management.

## Pre-requisites

* Organization should be on **Fillout**'s [Enterprise Plan](https://www.fillout.com/enterprise)
* Your account must have an **Admin** role in your team

<Info>
  SAML is available on Fillout's [Enterprise Plan](https://www.fillout.com/enterprise).
</Info>

## Set up SSO

After signing up or upgrading your plan, you will be sent setup instructions via WorkOS.

## How to Log in Using SSO

Once SSO is configured, your team members can log in by clicking on `Login with SSO` on the Fillout login page and entering their company email.

<img src="https://mintcdn.com/fillout-005a867b/ytxxlWjMK3U1U8Hr/images/Screenshot2025-11-06at6.26.47PM.png?fit=max&auto=format&n=ytxxlWjMK3U1U8Hr&q=85&s=4b0df0142d1669b5cbfdb9606ce4d404" alt="Screenshot 2025-11-06 at 6.26.47 PM.png" title="Screenshot 2025-11-06 at 6.26.47 PM.png" style={{ width:"74%" }} width="1091" height="862" data-path="images/Screenshot2025-11-06at6.26.47PM.png" />

## How provisioning users works

Fillout does not currently auto-provision users when they are added to your SSO provider. Instead, an account in Fillout will be created when the user logs into Fillout for the first time, using the SSO login.

**Enforcing SSO**

Contact [support@fillout.com](mailto:support@fillout.com) if you would like to enforce SSO for all users on your account.

By default, users added to your account before enabling SSO will still be able to authenticate with their prior authentication method (e.g., password or Google login). At your request, we can enforce SSO for all users going forward, including existing users. Existing users will still retain all their prior details once they login with SSO.

<Warning>
  SAML SSO can only be enforced for a team if your current session was authenticated via SAML SSO. This ensures your configuration works correctly before restricting team access, preventing accidental loss of access.
</Warning>

**SSO on forms**

Fillout also supports adding SSO to your forms and pre-filling fields with employee information. [Learn more here.](/help/sso-form-login)
