Compliance · SSO & identity

SSO: sign in with your own directory

People sign in with the Microsoft Entra ID or Google Workspace account they already have. Access, roles and offboarding follow your directory — no second login world grows next to your identity management.

Who this is for

IT & identity

Wants one place where access is managed, not a second user administration with its own passwords.

CISO & security

Wants no shadow accounts, and a connection that is locked to the organisation’s own tenant.

Data protection officer

Wants AI usage traceable to people and teams, with the same identity in the audit trail.

The problem

A separate login world is a hole in your offboarding.

An AI platform with its own accounts creates exactly what identity management tries to prevent: reused passwords, accounts nobody manages, and former employees who quietly keep access after they leave.

Numaga doesn’t build its own login world. The platform federates to the identity provider you already run; whoever isn’t (or is no longer) in it, doesn’t get in.

How it works

Identity that follows your directory, from first sign-in to departure.

SSO isn’t an extra login button here; it’s the only way in.

01

Federation with your IdP

Numaga connects to Microsoft Entra ID or Google Workspace. No separate password, no extra account administration.

02

One action to get in

Whoever opens the platform is sent straight to their own Microsoft or Google sign-in. An account comes into existence at first sign-in; the e-mail address from the directory is the identity.

03

Lifecycle follows the directory

Blocked in your IdP means blocked in Numaga. Roles and groups come along and drive authorisation, down to knowledge-base level via RBAC.

04

Locked and traceable

The Entra connection is mandatorily locked to your own tenant, against account takeover via foreign tenants (nOAuth). The same identity carries through into the audit trail and cost attribution.

In practice

Proven where data is most sensitive.

Numaga is running a pilot with Ontdek Zorg, a home-care organisation in Gelderland. Healthcare, with special-category personal data under the GDPR, is where responsible AI is hardest. That is exactly where we put the control plane to the test.

  • Home care in Gelderland
  • Special-category data (GDPR Art. 9)
  • Policy and redaction on every prompt
ontdekzorg.nl

Connect your directory in a demo environment.

We show the full flow: first sign-in, roles from your IdP and what happens at offboarding.

Request demo access