| Feature | Purpose | Plan | Who can configure |
| Managed SAML | Sign users in through the identity provider for a verified company domain | Business | Workspace owner |
| SCIM | Provision and deactivate workspace users from your identity provider (Microsoft Entra ID or Okta) | Business | Workspace owner |
| Custom access domain | Serve the workspace portal and MCP endpoint from a company-controlled hostname | Reserved for a future MSP package | Workspace owner |