Harmony
Access & identity

Gestión de identidad fluida

Conecta Harmony con tu proveedor de identidad existente. Single sign-on, aprovisionamiento automatizado y control de acceso centralizado — sin fricción para tu equipo.

IDENTITY MANAGEMENT

Everything your identity provider already does

The questions IT and security teams ask first, answered plainly.

SAML and OIDC sign-on

Connect Harmony to Okta, Microsoft Entra ID, Google Workspace, or any SAML 2.0 or OpenID Connect provider.

Automated provisioning

SCIM creates, updates, and deactivates accounts the moment they change in your directory. No manual account admin.

Directory sync

Teams, roles, and group memberships stay in step with your corporate directory in real time.

Just-in-time access

New people are provisioned on first login with the right role already applied. Nothing to set up by hand.

MFA enforced

Require multi-factor for everyone. Works with hardware keys, authenticator apps, and push notifications.

Session control

Set session timeouts, force re-authentication, and revoke every active session in a single click.

ACCESS & IDENTITY

One place to decide who gets in

Works with your provider

Okta, Microsoft Entra ID, Google Workspace, OneLogin, JumpCloud, and any standards-based identity provider.

Roles from your groups

Map directory groups to Harmony roles so people land with exactly the access they should have.

Central admin console

See every member, role, and active session, and make changes from a single dashboard.

Instant offboarding

When someone leaves your directory, their Harmony access is removed automatically at the same moment.

Verified domain capture

Claim your email domains so new sign-ups join your workspace instead of creating shadow accounts.

Access audit logs

Every sign-in, role change, and provisioning event is logged and exportable for review.

PRIVACY & GOVERNANCE

Least privilege, by default

Access that stays current with your organization, with a clear record of every change.

Least-privilege roles

People get the narrowest access that lets them do their work, and nothing more.

A complete access trail

Provisioning, role changes, and sign-ins are recorded so you can answer any audit question.

Automated joiner and leaver

Onboarding, role moves, and offboarding follow your directory automatically, with no gaps to clean up.

COMMON QUESTIONS

SSO and SCIM, answered

Still have a question? Our team is happy to walk through your setup.

Which identity providers do you support?+
Any SAML 2.0 or OpenID Connect provider, including Okta, Microsoft Entra ID (Azure AD), Google Workspace, OneLogin, and JumpCloud.
Do you support SCIM provisioning?+
Yes. SCIM 2.0 keeps accounts and group memberships in sync so you never have to provision or deprovision by hand.
Is SSO available on every plan?+
SSO and SCIM are part of our enterprise plan. Talk to sales and we will turn it on for your workspace.
Can we enforce MFA for everyone?+
Yes. You can require multi-factor for all members, or rely on the MFA policy already set in your identity provider.
How long does setup take?+
Most teams connect their provider in under an hour. We provide step-by-step guides and hands-on help during onboarding.
What happens when someone leaves?+
As soon as they are removed or disabled in your directory, SCIM revokes their Harmony access automatically.

Bring Harmony to your
whole company

One connection to your identity provider, and every team is ready to go.