The most helpful part is having one place to manage SSO, MFA policies, and tokens for our key SaaS apps, instead of juggling separate configs per vendor. Conditional access rules tied to groups and network zones let us treat high‑risk apps differently without confusing end users, and the built‑in reports have been good enough to satisfy most audit questions without extra scripting. Review collected by and hosted on G2.com.
Initial SAML and OIDC integrations sometimes required more trial‑and‑error than expected because each app has its own quirks, and the error messages are not always very specific. The admin UI is powerful but has a few places where options are spread across multiple screens, so new admins need some time before they can make changes confidently. Review collected by and hosted on G2.com.