Auth Provider Integrations
Google, GitHub, Apple, SAML — all through ee.auth
Google, GitHub, Apple, Microsoft, SAML, OIDC — all through ee.auth. Automatic user provisioning, token refresh, profile sync, and MFA — no boilerplate.
Supported providers
Social. Enterprise. Custom.
OAuth 2.0 — Gmail, Workspace, Google Cloud Identity.
GitHub
OAuth — developer-focused login, org membership scoping.
Apple
Sign in with Apple — privacy-first, email relay support.
Microsoft
Azure AD, Microsoft 365, personal accounts — all supported.
Facebook Login — social graph, friends list, profile data.
Twitter / X
OAuth 2.0 PKCE — tweet, profile, and follower scopes.
OAuth — professional profile, connections, company pages.
SAML
Enterprise SSO — Okta, OneLogin, Azure AD, Ping Identity.
OIDC
OpenID Connect — any OIDC-compliant identity provider.
Code
One call. Any provider.
// Social login — one call
const session = await ee.auth.socialLogin({
provider: 'google',
redirectUri: 'https://app.acme.co/callback',
scopes: ['email', 'profile'],
})
// Enterprise SAML SSO
const ssoSession = await ee.auth.samlLogin({
provider: 'okta',
entityId: 'acme-corp',
redirectUri: 'https://app.acme.co/sso/callback',
})Features
Auth that just works.
Automatic Provisioning
First login creates the user — name, email, avatar synced automatically.
Token Refresh
Access tokens refresh transparently — no expired-token errors in production.
Profile Sync
User updates their profile at the provider? EEv3 syncs it automatically.
MFA Support
TOTP, SMS, email, passkeys — layer MFA on top of any provider.
Enterprise
Corporate identity. Handled.
SAML SSO
Connect corporate identity providers — Okta, Azure AD, OneLogin, Ping. One config.
SCIM Provisioning
Automatic user and group sync — create, update, deactivate from your IdP.
Add auth in minutes
One SDK call per provider. Automatic provisioning, token management, and MFA — no auth library required.
Connect a Provider