Single Sign-On (SSO)
Shoplogix IMS supports Single Sign-On (SSO) for organizations that manage identity through a centralized identity provider (IdP). When SSO is enabled for your account, users with matching email domains are automatically directed to your organization's SSO login flow instead of the default email/password authentication.
How It Works
- A user navigates to Shoplogix IMS and enters their email address
- Insights checks whether the email domain matches any domain registered for SSO
- If the domain matches, the user is redirected to your organization's identity provider to authenticate
- On successful authentication, the user is signed into Insights with the privileges assigned to their account
Users whose email domains do not match the registered SSO domains continue to use the standard Insights login flow.
Enabling SSO
SSO configuration is managed by your Shoplogix account team in coordination with your IT Admin. To enable SSO:
- Contact your Shoplogix account team with your identity provider details
- Provide the email domain(s) that should trigger the SSO flow (e.g.,
yourcompany.com) - Your account team will configure the SSO connection and register your domains
At least one email domain must be registered when SSO is enabled. Multiple domains are supported (for example, if your organization uses both company.com and companygroup.com).
User Provisioning
Once SSO is enabled, users can be invited to Insights by a Customer Admin or IT Admin as usual — see User Management for how to add users and assign roles. Invited users with matching email domains will automatically use the SSO flow when they log in.
Roles and Privileges
SSO does not affect role assignments. Each user's privilege level in Insights is managed separately through User Management, regardless of how they authenticate.
Supported Identity Providers
Shoplogix IMS partners with Auth0 for enterprise identity management, which supports connecting the following enterprise identity providers:
- Active Directory / LDAP
- Active Directory Federation Services (ADFS)
- Azure Active Directory (native and v2)
- Google Workspace
- OpenID Connect (OIDC)
- Okta
- PingFederate
- SAML
Other providers available through the Auth0 Marketplace may also be supported — ask your account team if your identity provider isn't listed above. Marketplace connections can require additional third-party configuration.
Requirements
- An active identity provider that supports the OAuth 2.0 / OIDC protocol
- A registered email domain associated with your Shoplogix customer account
- SSO must be enabled for your account by your Shoplogix account team
Contact your account team to get started or to add additional SSO domains.