Circleback works with any identity provider that supports OpenID Connect (OIDC), so your team can sign in with the provider your company already uses.
You need to be a Circleback workspace admin and have access to manage applications in your identity provider. See Set up single sign-on for workspace requirements.
If you're connecting with SAML instead, follow the SAML guide.
Create an OIDC application
Keep Circleback and your provider's admin console open in separate tabs as you set up the connection. Field names may vary by provider.
In Circleback, go to Settings → General (under Workspace).
Under Single sign-on, select Connect. Choose OIDC, then select Continue.
In your provider's admin console, create an OpenID Connect application named Circleback.
Copy the Callback URL from Circleback into your provider's callback or redirect URL field:
https://circleback.ai/api/sso/oauth/oidc.Copy the application's Client ID and Client secret into the matching fields in Circleback. Keep the client secret private.
Copy your provider's Discovery URL into Circleback. This must use HTTPS and usually ends in
/.well-known/openid-configuration. Use the URL for the tenant or authorization server where you created the application; you can find it in your provider's documentation.In your provider, give the people or groups who should use Circleback access to the application.
Return to Circleback and select Continue.
Leave No directory sync selected if you only need SSO, or choose a directory provider to set up SCIM provisioning. Select Connect.
If you chose a directory provider, use the credentials shown in Circleback to set up directory sync.
To require everyone in your workspace to log in with SSO, follow Enforce SSO for your workspace.
