Provider-neutral SSO
Identity is designed to sit behind your provider, not to replace it. The direction is standards-based SSO over SAML and OIDC, SCIM provisioning, and mapping identity-provider groups to KnownScope roles, so access follows the identity you already run. These are the building blocks we are working toward, not capabilities available today.