Built for IT, schools and print farms with real user directories
Whether you run a school district on Google Workspace, a company on Microsoft Entra ID, or a print farm with a mixed team, SimplyPrint connects to your directory so the right people get in, the right way, with no shared logins and no manual account juggling.
Works with the identity providers you already use
Connect your provider once in account settings. OpenID Connect has one-click presets for the major providers, SAML 2.0 covers everything else, and a generic option handles any standards-compliant identity provider.
OpenID Connect (OIDC) with one-click presets
Pick your provider, paste two values, you're done
OpenID Connect is the quickest way to connect. Choose a preset for Microsoft Entra ID, Google Workspace, Okta, Keycloak or Authentik and SimplyPrint pre-fills the scopes and claim mappings for you - or pick the generic option for any standards-compliant OIDC provider. Copy the redirect URI we show into your provider, paste your client ID and secret back, and the setup wizard checks your discovery document live before you save.
Under the hood it uses the OIDC authorization-code flow with PKCE, validates every signed ID token (RS256 or stronger, never an unsigned or HMAC token), checks the nonce, and pins the issuer and audience to your provider. When your provider supports single logout, signing out of SimplyPrint signs the user out at the provider too.
SAML 2.0 for any enterprise identity provider
Signed assertions, presets, and federation support
Need SAML? SimplyPrint is a full SAML 2.0 service provider. Presets for Google Workspace, Microsoft Entra ID and Auth0 auto-fill the endpoints, and a generic option connects any SAML 2.0 identity provider. Signed assertions are required by default, and you get the SP entity ID, ACS URL and metadata URL right in the setup screen to paste into your IdP.
For research and education, SimplyPrint also supports SAML federation sign-in so members of a federation can connect through their existing federated login.
Verify your domain and route people to the right login
Add a DNS TXT record to prove you own a domain like yourschool.edu or yourcompany.com. Once a domain is verified, anyone who types a work or school email at that domain is sent straight to your single sign-on - no need to find the right button first. Verified domains also let SimplyPrint trust new accounts created on first sign-in, so the right people land in the right account automatically.
How to verify your domains
Accounts that create and clean up themselves
Stop maintaining a second copy of your user list by hand. SimplyPrint can create accounts the first time someone signs in (just-in-time provisioning), and connect to SCIM 2.0 so your identity provider pushes the full picture: new people get an account, and people who leave are removed automatically. Live SCIM guides cover Okta and Microsoft Entra ID.
Just-in-time sign-up
First sign-in creates the account, gated by trusted email.
SCIM provisioning
Your directory adds and removes people automatically.
No orphaned logins
Deprovisioning removes access when someone leaves.
Map your groups to roles, and lock down who gets in
Send a group or attribute from your identity provider and SimplyPrint maps it to the right SimplyPrint user group, so people arrive with the correct role and permissions instead of being set up one by one. You can also add a sign-in rule that only lets people in when a chosen attribute or claim matches a value you set - useful for restricting access to a specific department, staff group or class.
Group and role mapping
SSO, tuned to how you run your printers
Single sign-on means something different for a school district than it does for a company. Start with the guide built for you.
Plan access: which plans include single sign-on?
Single sign-on is included on the School and Enterprise plans. Print Farm subscribers from before the Enterprise plan launched keep their access. SAML, OIDC, SCIM provisioning, verified domains and group mapping are all part of it - there's no separate SSO add-on.
| Feature / Limit | Free | Basic | Pro | Print Farm | Enterprise | School | Cloud Slicer | Filament Manager |
|---|---|---|---|---|---|---|---|---|
|
Single sign-on (SSO)
SAML 2.0 and OpenID Connect sign-in, provider presets, SCIM provisioning, verified domains and group mapping.
|
Want to learn more about our plans?
View full pricing & feature comparison