Skip to main content

Invitations and SSO

User Invitations​

New users are invited by an administrator rather than self-registering.

How invitations work​

  1. An administrator creates a user from Users → New User and enables Send Invitation Email.
  2. Dossier sends an invitation email with a link to /auth/accept-invitation?token=....
  3. The user clicks the link, which validates the token and redirects them to Auth0 to complete signup.
  4. After signup, the user can sign in normally.

Create new user dialog

Dossier invitation

Invitation status indicators​

When editing a user, you may see status badges:

StatusMeaning
Invitation SentThe invitation email was sent but the user has not completed signup.
Email not ConfirmedThe user signed up but has not verified their email.
Not Signed UpThe user record exists but signup is incomplete.

Invitation Status

SSO Configuration​

Tenant administrators can configure authentication methods from Tenant Settings → Authentication.

Available connection types​

ConnectionDescription
Default (password)Email and password login through Auth0.
GoogleSign in with a Google account.
Custom SSOA SAML or OIDC connection configured for your organization.

tenant-authentication

Enabling and disabling connections​

  1. Navigate to Tenant Settings → Authentication.
  2. Toggle a connection on or off.
  3. At least one connection must remain enabled at all times.

Adding a custom SSO connection​

  1. Click Add SSO on the Authentication page.
  2. Follow the Auth0 self-service setup flow to configure your identity provider.
  3. Once created, enable the connection for your tenant.

SSO dialog

warning

Only users with Admin permissions can access Tenant Settings. Custom SSO is limited to one connection per tenant.