Skip to content

Sign in (SSO)

The Fabric console is an administrative surface — there is no ungoverned end-user tier. Users sign in at /login (header: “Welcome Back”) with Email and Password, then Sign In — or with enterprise single sign-on.

The Wexa Fabric login screen.

  • Enterprise SSO over OIDC and SAML, with email-domain-to-provider detection and just-in-time provisioning.
  • SCIM directory synchronization for automated provisioning and deprovisioning — when a user is removed in your IdP, SCIM disables the corresponding Fabric account.
  • Multi-factor authentication.

Sessions use short-lived, audience-pinned tokens.