Setup SSO
To set up SSO, a Workspace Owner or Admin must log in and navigate toSettings → Workspace → Identity, then follow the setup instructions.
SSO is available on Business and Enterprise plans. The Identity tab is visible only on these plans.
Choose your protocol
Pick the protocol used by your identity provider:- OIDC (recommended when available) → See provider guides below
- SAML → See provider guides below
Use OIDC (recommended)
Modern, simpler configuration with standardized scopes and discovery.
Use SAML
Enterprise-friendly option with attribute mapping.
Common issues and troubleshooting
I already have an account, but I'm joining a business workspace that uses SSO. How do I log in?
I already have an account, but I'm joining a business workspace that uses SSO. How do I log in?
If you created your account using another login method (like email/password, Google, or GitHub), you’ll need to log in that way first. Once you’re logged in, navigate to Settings → Identity → Link with SSO. This will link your existing account to your SSO identity.
Important: If you attempt to log in with SSO before linking your existing account, you’ll see an error. This is a security measure to prevent unauthorized access. Log in using your original method first to complete the linking process.
Which SSO providers does Lovable support (Okta, Entra ID, Google SSO, etc.)?
Which SSO providers does Lovable support (Okta, Entra ID, Google SSO, etc.)?
Lovable supports all SSO providers that implement OIDC (OpenID Connect) or SAML protocols. This includes, but is not limited to: - Okta - Microsoft Entra ID (formerly Azure AD) - Google Workspace - Auth0 - OneLogin - - Any other OIDC or SAML-compliant identity provider Since we support the industry-standard OIDC and SAML protocols, you can integrate with any SSO provider that supports these protocols.