SAML Single Sign On – SSO Login icon

SAML Single Sign On – SSO Login

Integrate WordPress login with enterprise identity providers including Okta, Entra ID, Azure AD, and Keycloak via SAML protocol. Used by 10K+ sites and rated 4.9/5, this plugin ranks in the top 1% of all WordPress plugins.

Generated on 8 Jul 2026. Score and stats mentioned may differ from current live data.

  • #641 Global Rank
  • 10K+ active installs
  • 4.9/5 394 ratings
  • Since 2015 11 years active

PF Score (About PF Scores)

PF Score is not a quality guarantee. It is a ranking based on available public signals.

Platinum85.2
Platinum
Gold
Silver
Bronze
Low

Score Breakdown

66.7
Popularity 40% 10K+ active installs
96.2
Reputation 35% 4.9★ from 394 ratings
99.6
Freshness 25% Updated 4 days ago

No active penalty — 7 historical CVEs, resolved — details

Download Trends

Loading download data…

Vulnerabilities

7 Total
7 Patched
0 Active
100% Resolved rate
CWE-287 · Improper Authentication

The SAML Single Sign On – SSO Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.4.4. This is due to the mo_saml_validate_signature() function performing a loose boolean check on the raw tri-state integer returned by PHP's openssl_verify(), causing an error return value of -1 to be evaluated as truthy and therefore treated as a successful signature verification. This makes it possible for unauthenticated attackers to log in as any existing WordPress user, including administrators, by submitting a crafted SAMLResponse containing an attacker-controlled NameID and a deliberately malformed signature value that triggers an OpenSSL processing error — bypassing verification entirely and resulting in wp_set_auth_cookie() being called for the targeted account.

9.8 Critical Affected All – 5.4.4 Patched in ✓ 5.4.5 Published 23 Jul 2026 CVE CVE-2026-15981
CWE-347 · Improper Verification of Cryptographic Signature

The SAML Single Sign On – SSO Login plugin for WordPress is vulnerable to Authentication Bypass via SAML Signature Algorithm Confusion in all versions up to, and including, 5.4.3. The vulnerability exists because `Mo_SAML_Utilities::mo_saml_cast_key()` reads the `SignatureMethod` Algorithm attribute directly from the attacker-controlled `SAMLResponse` parameter rather than enforcing the locally configured algorithm, causing the plugin to recast the IdP's RSA public key as an HMAC-SHA1 shared secret and validate the forged signature against it. This makes it possible for unauthenticated attackers to forge a SAML assertion targeting any WordPress account — including administrators — obtain valid WordPress authentication cookies, and achieve full administrator-level account takeover.

9.8 Critical Affected All – 5.4.3 Patched in ✓ 5.4.4 Published 15 Jul 2026 CVE CVE-2026-15013
CWE-601 · URL Redirection to Untrusted Site ('Open Redirect')

The SSO Login Premium Multisite plugin for WordPress is vulnerable to Open Redirect in versions up to, and including, 20.0.7 due to missing validation of its redirect parameter. This makes it possible for an attacker to redirect authenticated users. This vulnerability also affects the Premium Edition (versions <12.1.0) and Standard Edition (versions <16.0.8) of the plugin.

6.1 Medium Affected 16 – 16.0.8 Patched in ✓ 16.0.8 Published 6 Jan 2023 CVE CVE-2022-4496
CWE-79 · Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

The SAML Single Sign On – SAML SSO Login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in versions up to, and including, 4.9.20. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.

6.1 Medium Affected All – 4.9.20 Patched in ✓ 4.9.21 Published 6 Jun 2022
CWE-79 · Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Utilities.php in the miniorange-saml-20-single-sign-on plugin before 4.8.84 for WordPress allows XSS via a crafted SAML XML Response to wp-login.php. This is related to the SAMLResponse and RelayState variables, and the Destination parameter of the samlp:Response XML element.

6.1 Medium Affected All – 4.8.83 Patched in ✓ 4.8.84 Published 28 Jan 2020 CVE CVE-2020-6850

Vulnerability data provided by Wordfence Intelligence (opens in a new tab). CVE data: Copyright 1999–2026 The MITRE Corporation. CVE Terms of Use (opens in a new tab).

Support Statistics

1 Support threads
1 Resolved
100% Resolution rate

About SAML Single Sign On – SSO Login

SAML SSO (Single Sign On) for WordPress Login with Okta, Entra ID/Azure AD, GSuite, Salesforce & All SAML IdPs. Free Unlimited SSO [24/7 Support]

SAML SSO (Single Sign On) for WordPress Login with Okta, Entra ID/Azure AD, GSuite, Salesforce & All SAML IdPs. Free Unlimited SSO [24/7 Support]

SAML Single Sign On (SSO) Plugin to Simplify WordPress Login Experience

With the miniOrange WordPress SAML SSO plugin, you can enable Single Sign On (SSO) for your WordPress site. This means users can sign in with their existing accounts from Identity Providers (IDPs) like Microsoft Azure AD/ Entra ID, Google Apps Login (Gsuite Login), Okta, Salesforce Login, Keycloak, Shibboleth, OneLogin, ADFS, Auth0 Login, Office 365 Login, and others without creating separate WordPress usernames and passwords.

The SAML plugin also offers AI-assisted plugin configuration, troubleshooting, and LLM-readable error logs to quickly resolve SAML SSO login issues.

The SAML plugin makes your WordPress site function as a SAML-compliant Service Provider (SP) by using the SAML 2.0 protocol to securely exchange authentication data with your chosen Identity Provider (IDP). Once users are authenticated by the IDP, they automatically gain access to your WordPress site and its resources.

Our WP SAML SSO plugin is designed for you if you need:

  • Instant Secure Authentication
    Users access WordPress immediately using their existing Identity Provider (IDP) credentials without managing WordPress-specific passwords.

  • Centralized Access Management
    Control everyone’s WordPress access through your SAML Identity Provider (IDP) security policies.

  • Organization-Only Access
    Restrict WordPress access exclusively to verified employees through SAML Identity Provider (IDP) authentication and MFA.

  • AI-Powered SSO SAML Configuration & Troubleshooting
    Use AI Abilities to configure WordPress SAML SSO, manage role mapping and user provisioning, and quickly fix supported SAML errors using AI tools like ChatGPT, Claude, Cursor, or Perplexity. Simplify setup, reduce troubleshooting time, and manage SSO workflows using natural language.

  • Smart User Provisioning
    Automatically create WordPress accounts and assign roles based on Identity Provider (IDP) groups and user data.

  • Reduced Administrative Overhead
    Eliminate manual user creation, password resets, role assignments, and access management tasks.

  • Flexibility Across Different Identity Providers (IDP)
    Our SAML plugin works with 100+ IDPs. Enterprises can set up Azure AD login into WordPress for employees, while universities use WordPress Okta SSO, Google Apps SSO (Gsuite Login), Salesforce SSO, Shibboleth SSO, OneLogin SSO, ADFS SSO, Keycloak SSO, Office 365 Login, Auth0 SSO, Azure B2C SSO (Azure AD B2C login) or any other SAML IDPs of their choice.

Quick Links

🌐Official Website | 🛠️Setup Guide | 🎁Free Full-Feature Trial | 💎Pricing Plans | 🧩Integrations & Addons | 📧 Office 365 Integrations | 🤝Support | SAML SSO Abilities

WordPress SAML SSO Login Explained in Minutes

WP SAML SSO Plugin Supports All SAML Identity Providers

Set Up Our WP SAML Single Sign On (SSO) Plugin in Three Easy Steps

Step 1: Install Our WordPress SAML SSO Plugin
Download the WordPress SAML SSO (Single Sign On) plugin from the WordPress plugin directory and install it on your WordPress site.

Step 2: Share Your WordPress Site’s Metadata from the WP SAML Plugin with the Identity Provider (IDP)
Provide the Service Provider (SP), i.e., your WordPress site’s metadata URL or file, to your Identity Provider (IDP) to register your WordPress site as a trusted Service Provider (SP).

Step 3: Import Your Identity Provider’s (IDP) Metadata into the SAML SSO Plugin
Next, upload the IDP’s metadata URL or file to your WordPress site in the plugin settings to enable secure SAML authentication.

That’s it! Your WordPress site is now secured with enterprise-grade Single Sign On (SSO) SAML authentication. You can verify the connection by using the Test Configuration button in the SAML plugin.

Watch Our Complete Step-by-Step Installation Video for WordPress SSO SAML Login

Follow along with our detailed video walkthrough to see exactly how each step works and ensure your SAML SSO login is configured correctly from start to finish.

Here to Support You, Always

Whether you have questions about setup, pricing, or how the WordPress SSO SAML plugin works, our expert team is available 24/7 to assist you. Simply reach out to [email protected], and we will ensure you receive timely and reliable guidance.

Features of Our WordPress SAML Single Sign On (SSO) Plugin

Unlimited User Authentications: Allows an unlimited number of users to log in through SAML SSO with your IDP authentication while maintaining optimal site performance during peak traffic.

Auto Login: Automatically logs users into WordPress if they have an active SAML IDP session, without requiring them to re-enter the IDP credentials.

Force Authentication: Ensures that users authenticate via SAML IDP each time they log in to the WordPress site, regardless of any active IDP session.

Complete Site Protection: Secures your site’s frontend pages/posts and backend WP-Admin pages behind SAML SSO (Single Sign On) by redirecting all users to IDP if an active session is not found on the IDP. You can add another security layer using Media Restriction and REST API authentication.

Automatic User Creation: Creates new WordPress user accounts automatically on the user’s first Single Sign On login if no account exists by syncing their profile details from the IDP.

Account Linking: Enables users to log into their existing WordPress accounts via their IDP credentials by matching their username or email in WordPress and SAML IDP. This ensures no duplicate accounts are created.

Just-in-Time (JIT) Profile Updation: Updates WordPress user accounts at each SAML SSO login (Single Sign On) by syncing data from IDP. It maps basic attributes (username, email, first name, last name, etc.) and advanced/custom attributes (department, phone, job title, employee ID, etc.) to maintain accurate user profiles.

Role-based Access: Assigns WordPress roles such as Administrator, Editor, Author, Contributor, or Subscriber to users during WP SAML SSO login. The role assignment is based on the group information provided by the IDP.

Custom Login Buttons and Shortcodes: Adds SAML SSO login buttons to the WordPress login page or any page on the site using widgets and shortcodes. You can change the text, font, color, and size of these buttons to match your site’s design.

Single Logout (SLO): Terminates a user’s session on the WordPress site and the IDP simultaneously when logging out of either of them.

Login Using Multiple IDPs: Allows users to authenticate with different Identity Providers (IDPs) when logging into WordPress. You can also set up email domain mapping so users are automatically directed to the right IDP. For example, an organization can easily set up Azure AD SSO (Azure Login), Azure B2C SSO, Okta SSO, or any other IDP for employees, and use Gsuite SSO (Gsuite Login) for partners or vendors.

Certificate Sync and Multiple Certificates: Automatically syncs X.509 certificates from the SAML Identity Provider (IDP), managing rollover, replacement, and addition without disrupting the SSO connection. It also supports multiple active certificates from the same IDP, allowing WordPress to work with custom setups or environments where more than one certificate is in use.

WordPress SSO on Multisite Networks: Applies one SSO SAML configuration to all subsites in a WordPress multisite network. This centralizes SSO management, so you do not need to configure each subsite individually.

Single & Multi‑Tenant Azure AD Login: Connects both single-tenant (one directory) and multi-tenant (multiple directories) Azure AD(Login with Azure AD) or Office 365 Login to WordPress. Users from different tenants can log in to WordPress through Azure AD SSO using their existing accounts.

Cross-Environment Deployment: Supports multiple environments such as Development, Test, and Production, allowing IT teams to configure WordPress SSO once and maintain consistent settings across all instances.

WP‑CLI Support: Provides WP‑CLI commands for activating licenses, configuring WP SAML SSO settings, importing or exporting configurations, and updating the plugin. All key SAML SSO functions can be managed from the command line without using the WordPress dashboard.

Extend Your Single Sign On Experience With Our Addons

Real-time SCIM User Provisioning: Syncs user records between the SAML IDP and WordPress in real time when the user is created, updated, or removed to maintain accurate data and strengthen security and efficiency.

Page and Post Restriction: Controls access to your content by restricting pages and posts to specific user roles or login status (whether a user is logged in). If an unauthorized person attempts to view protected content, they can be automatically redirected to authenticate via a SAML Identity Provider (IDP), the WordPress login page, or any custom URL you specify.

Media Restriction: Blocks unauthorized downloads of images, videos, and documents by allowing only SAML SSO–verified users with proper IDP permissions to view or retrieve media files.

Attribute-Based Redirection: Directs users to specific URLs after Single Sign On based on IDP attributes such as role or department to ensure tailored access paths.

Guest User Login (Anonymous Login): Allows users to log in to the WordPress site without creating a WordPress user account for them.

SSO Session Management: Sets default or role-specific session timeouts for SAML SSO users according to IDP-assigned roles to balance convenience with security.

SSO Login Audit: Records all user login and registration activities on your WordPress site. It generates detailed reports that track essential information for each session, including the user, login time, and source IP address. The addon also includes advanced search filters for quickly locating specific events within the audit logs.

WordPress IP Whitelisting: Grants WordPress access to users with specific IPs and allows them to bypass IDP redirection and access restricted content.

Profile Picture Mapping: Imports avatar images from the IDP into WordPress profiles for authenticated users to personalize the site experience.

Federation SSO: Supports logins from multiple federated organizations, such as universities or research consortia, by leveraging standard IDP federation protocols to unify access.

Our WordPress Single Sign On SAML plugin also integrates with third-party applications such as LearnDash, WooCommerce, BuddyPress, MemberPress, Paid Memberships Pro, and more, providing a simple SAML Single Sign On (SSO) experience that lets users access courses, online stores, community forums, membership content, and other protected resources with a single login.

Top Use Cases of Our WordPress SAML Single Sign On (SSO) Plugin

Education: SSO for Schools, Universities, and Federated Institutions

Our WordPress SAML SSO plugin helps educational institutions simplify secure access across their WordPress sites. Faculty and staff can log in through Azure SSO, while external collaborators or research partners authenticate using WordPress Okta SSO, Shibboleth SSO, GSuite SSO/ Google Apps SSO, and other IDPs. This flexibility ensures universities can accommodate multiple identity providers without creating separate WordPress accounts for every user.

Along with multiple IDPs, the WordPress SAML plugin also supports academic federations such as InCommon, HAKA, HKAF, etc. These federations connect entire networks of trusted institutions and allow users to authenticate with their home institution credentials, enabling students, faculty, and researchers from partner universities or organizations to access WordPress resources directly.

With our WordPress SAML plugin, universities can also manage SSO for Multisite Networks more effectively, making it easy to control access across subsites such as library.uni.edu or research.uni.edu. It further provides Guest User Login for temporary access by external collaborators, ensuring consistent and secure entry to academic resources.

Healthcare: WordPress SSO for Hospitals, Clinics, and Medical Portals

Healthcare organizations require access controls that protect sensitive data while remaining compliant with regulations. Our WordPress SAML SSO plugin for healthcare allows hospitals, clinics, medical portals, and other Healthcare Providers (HCPs) to authenticate users against their existing IDPs.

The WordPress SAML SSO plugin includes advanced features such as Force Authentication, which requires users outside the hospital network to authenticate with their IDP to access organizational resources, while allowing on-site users immediate access without re-authentication.

To further protect sensitive data, healthcare administrators can configure Role‑based Restrictions that limit access to patient records, laboratory results, research data, administrative content, and other sensitive information. This ensures that only authorized personnel can view or manage sensitive resources while helping institutions stay compliant with HIPAA and other healthcare data protection standards.

WooCommerce: SSO for B2B, Institutional Buyers, and E-Commerce

For online stores, the shopping experience depends on security and convenience working together. Our WordPress SAML SSO plugin integrates WooCommerce with Identity Providers (IDPs) such as Azure AD, Okta, or even other WordPress sites, allowing customers and staff to sign in with the same credentials they already use in their organization.

When deployed with the WooCommerce Integrator, SSO becomes part of the checkout process. Customers adding products to their carts are prompted to authenticate, and once logged in, their account details and order information synchronize automatically.

On the backend, manager and staff roles assigned in the IDP flow directly into WooCommerce, granting specific access to order data, inventory, and dealer portals. With user permissions centralized, businesses avoid duplication errors and maintain consistent security across their e‑commerce operations.

Multiple Site Businesses: SSO (Single Sign On) in WordPress to WordPress sites

Many businesses run multiple WordPress sites: a main site that stores all user accounts and roles (customers, managers, staff), and secondary sites that provide additional services and resources.

To avoid repeated logins and maintain consistent user management, the secondary sites can act as Service Providers (SPs) using our SAML Single Sign On plugin, while the main site serves as the Identity Provider (IDP) using the SAML IDP – Login with Website Users plugin.

When a user tries to access a secondary site, they are redirected to log in on the main site. Upon successful authentication, their credentials, profile details, and roles are passed back to the SP site. This provides seamless access, keeps user data synchronized, and maintains role-based permissions across both sites without manual account duplication.

Enterprise: SSO with Azure AD (Microsoft Entra ID)

Our SAML SSO plugin supports both Single-Tenant and Multi-Tenant Azure AD SSO, allowing users from different Azure AD (Microsoft Entra ID) tenants, whether they belong to separate organizations, subsidiaries, or business units, to securely log in to WordPress using Azure AD.

To simplify user lifecycle management, the plugin offers full SCIM Provisioning and Deprovisioning, automatically creating, updating, or removing WordPress accounts whenever changes are made in Azure AD. This ensures user data and permissions remain consistent …

Screenshots

Connect with any SAML supported IDPs for WordPress SSO.

Connect with any SAML supported IDPs for WordPress SSO.

Select your IDP and configure your WordPress site as SAML service provider.

Select your IDP and configure your WordPress site as SAML service provider.

Enter IDP metadata manually for WordPress SAML SSO (Single Sign On).

Enter IDP metadata manually for WordPress SAML SSO (Single Sign On).

Upload IDP metadata as a file or URL for WordPress Single Sign On (SAML).

Upload IDP metadata as a file or URL for WordPress Single Sign On (SAML).

Use metadata URL in the SAML plugin to configure your Identity Provider for SAML Single Sign On.

Use metadata URL in the SAML plugin to configure your Identity Provider for SAML Single Sign On.

Use WordPress endpoints mentioned in the SAML SSO plugin settings to configure your IDP.

Use WordPress endpoints mentioned in the SAML SSO plugin settings to configure your IDP.

Update user profile using Attribute Mapping for WordPress users after SAML SSO.

Update user profile using Attribute Mapping for WordPress users after SAML SSO.

Configure a default role for WordPress users after SSO.

Configure a default role for WordPress users after SSO.

Add a Single Sign On button on the default WordPress login page.

Add a Single Sign On button on the default WordPress login page.

Set SSO auto-redirection from complete site or from WordPress login page.

Set SSO auto-redirection from complete site or from WordPress login page.

Check Out all our third-party integrations to extend WordPress SAML SSO functionality.

Check Out all our third-party integrations to extend WordPress SAML SSO functionality.

Frequently Asked Questions

How to configure WordPress SSO (SAML)?
  • Download and install WordPress SAML 2.0 SSO plugin.
  • Add your WordPress site metadata details from the WordPress SAML Single Sign On plugin, into your Identity Provider (IDP), and generate the IDP metadata.
  • Upload the IDP metadata file/URL in the WP SAML SSO Plugin on your WordPress site for a successful WordPress SAML SSO connection.
I am not able to configure the Identity Provider with the provided settings

Please email us at [email protected] or Contact us. You can also submit your app request from the SAML plugin’s configuration page.

My SAML Identity Provider is not listed in the plugin or guides. How can I configure the plugin with my SAML IDP?

The WordPress SAML Single Sign On plugin can be configured with any SAML compliant Identity Provider simply by exchanging the SAML metadata between the plugin and your SAML IDP.
If you need any help in configuring the SAML plugin, please email us at [email protected].

Can the SAML SP plugin be configured to support multiple Identity Providers?

You can configure multiple SAML Identity Providers like Azure AD, Azure B2C, Okta, ADFS, Keycloak, Ping, etc in the plugin and provide different Single Sign On SSO login flow to the users.

Is the WP SAML plugin compatible with hosting providers like WP Engine, Pantheon, WordPress VIP, etc?

The Enterprise and All-Inclusive plans of our WordPress Single Sign On SSO SAML plugin are best suitable for multiple environments in a hosting provider.

Is it possible to redirect users to a particular URL after login or logout

With our WordPress Single Sign On SSO SAML plugin, you can set Relay State URL’s to redirect users after login as well as after logout.

I need integration with different third party plugins like Learndash, BuddyPress, WooCommerce, Memberpress, etc installed on my WordPress site

We already provide support for most of the third party plugins. Please email us at [email protected] or Contact us
and we will assist you with the integration.

How does AI-assisted troubleshooting work?

AI when enabled, the plugin logs SAML errors in a structured format that can be interpreted by AI tools like ChatGPT, Claude, or Perplexity. You can paste error messages into these tools to quickly identify and resolve configuration issues.

For any query/problem/request

Visit Help & FAQ section in the SAML plugin OR email us at [email protected] or Contact us. You can also submit your query from plugin’s configuration page.

Ratings & Reviews

Recent Reviews

Loading reviews…

View all reviews on WordPress.org (opens in a new tab)

Changelog

5.4.7

  • Removed certificate mismatch fix option to enhance security

5.4.6

  • Fix: Improved error handling for the SAML response

5.4.5

  • Bugfix: Fixed unauthorised access issue in SAML SSO

5.4.4

  • Removed support of insecure signature algorithms

5.4.3

  • Added compatibility with WordPress 7.0
  • Changed the guide links of Claude and Cursor Integrations In the SAML plugin

5.4.2

  • Improvement: Modified the feedback form in the SAML plugin

5.4.1

  • Feature: Added SAML SSO abilities support for the new WordPress Abilities API
  • Feature: Registered plugin commands in Command Palette
  • Improvement: Modified the Debug Log file name in the SAML plugin

5.4.0

  • Improvement: Minor UI Improvements in the SAML plugin

5.3.9

  • Improvement: Compatibility with WordPress 6.9
  • Fix: Handled warnings in case of Invalid SAML Response
  • Improvement: Usability Fixes in the SAML Plugin

5.3.8

  • Fix: Fixed console warnings due to notice.

5.3.7

  • Improvement: Usability Improvements in the SAML Plugin

5.3.6

  • Improvement: Minor UI Improvements in the SAML Plugin

5.3.5

  • Fix: Fixed the documentation links that are not accessible in the SAML plugin

5.3.4

  • Feature: Added SAML SSO Links with redirect option to use on your pages.
  • Improvement: Renamed Service Provider Setup tab to IDP Configuration.
  • Improvement: Updated Support form for call requests and improved overall UI.

5.3.3

  • Improvement: Handling SAML Destination with null safety and sanitization

5.3.2

  • Fix: Added check for handling invalid SAML Response XML and Empty DOMDocument

5.3.1

  • Improvement: Added exception details in function comments to address PHPCSFix issues
  • Fix: Updated htaccess rules to restrict direct URL access to SAML debug logs

5.3.0

  • Updated the pot files for German and Japanese Languages

5.2.9

  • Minor fixes in the SAML plugin

5.2.8

  • Compatibility with WordPress 6.8
  • Added the pot files for German and Japanese Languages

5.2.7

  • Added compatibility with PHP 8.4
  • Updated the Test Configuration window and included FAQs to help troubleshoot errors in the SAML plugin
  • Usability Fixes in the SAML Plugin
  • Removed POT files

5.2.6

  • Removed Unused Code in the SAML Plugin

5.2.5

  • Improved Exception Handling

5.2.4

  • Fixed console warnings when the notice gets dismissed

5.2.3

  • Security fixes in the SAML Plugin
  • UI Improvements in the SAML Plugin

5.2.2

  • Compatibility fixes for PHP 5.6
  • Improvements to the Test Configuration Window in the SAML plugin

5.2.1

  • Compatibility with WordPress 6.7
  • Usability Improvement in the SAML Plugin

5.2.0

  • Added the pot files for French, Spanish, German and Japanese Languages
  • UI Improvements in the SAML Plugin

5.1.9

  • Improvements to the SSO button on the WordPress login page
  • UI Improvements in the SAML Plugin

5.1.8

  • Handled Fatal Errors when PHP extensions (CURL, DOM, OPENSSL) are disabled
  • Clarified error codes on the Test Configuration tab for easier troubleshooting
  • Fixed console warnings during registration and login in the Account Setup Tab
  • UI Improvements in the SAML Plugin

5.1.7

  • Compatibility with WordPress 6.6
  • Added translation support in the SAML plugin
  • Added additional checks around the wp-config.php access flow
  • UI improvements in the SAML Plugin

5.1.6

  • Fix for wp-config.php file read flow in the SAML plugin

5.1.5

  • Added PHPCS Fixes in the SAML plugin
  • Fix for the warning while editing the Theme
  • Performance Fixes in the SAML plugin

5.1.4

  • Compatibility Fixes with WordPress 6.5

5.1.3

  • Updating pricing links for WordPress SAML SSO Plugin

5.1.2

  • Added free trial for SAML SSO

5.1.1

  • Updates in SAML SSO Plans UI

5.1.0

  • SSO button Fix on update in the SAML plugin

For older changelog entries, please see the additional changelog.txt file provided with the SAML plugin.

Alternatives to SAML Single Sign On – SSO Login

Other WordPress plugins serving a similar purpose, ranked by relevance and PF Score.

Bronze54.0
Cloud SAML SSO – Single Sign On Login icon

Cloud SAML SSO – Single Sign On Login

WordPress SSO using SAML IDPs to enable single sign on using Azure AD, Office 365, Okta, ADFS, KeyCloak, OneLogin, Salesforce,…

★ 4/5·70+ installs·Updated 15 Jan 2026
Gold74.3

OneLogin SAML SSO

Integrates SAML-based single sign-on with WordPress to streamline user authentication through external identity providers.

★ 4.4/5·7K+ installs·Updated 1 Jul 2026
Bronze45.6
SSO Login – Universal (OAuth + SAML) icon

SSO Login – Universal (OAuth + SAML)

SSO Login provides user login, business authentication, SSO, Social login, and Single Sign-On for all sites.

10+ installs·Updated 29 Nov 2025
Bronze45.1
Open Access SSO icon

Open Access SSO

Free, privacy-first SAML 2.0 single sign-on for WordPress. Role mapping, access control, multi-IdP. No premium tier, no tracking.

Updated 13 Jul 2026
Bronze43.7
SSO & SAML Login — Azure AD / Entra ID icon

SSO & SAML Login

Log in to WordPress with Microsoft Azure AD / Entra ID using SAML 2.0 or OpenID Connect (OIDC). Simple setup,…

Updated 15 May 2026
Silver66.2

SSO for Entra ID

Enable Single Sign On with Microsoft Entra ID (formerly Azure AD) on your site.

★ 5/5·600+ installs·Updated 4 Jul 2026
Bronze52.6
Twelve Legs Marketing SSO icon

Twelve Legs Marketing SSO

Single sign-on plugin for WordPress that accepts RS256 JWTs from the TWL SSO application for secure authentication.

10+ installs·Updated 25 Jul 2026
Bronze52.1
i4a Single Sign-On icon

i4a Single Sign-On

Allows a bidirectional single sign-on between a WordPress website and an i4a-hosted website for current members who can sign in…

10+ installs·Updated 28 Jul 2026
Bronze44.4
TokenLink SSO Login for Zendesk icon

TokenLink SSO Login for Zendesk

Provides secure JWT-based single sign-on (SSO) between WordPress and Zendesk. No third-party plugins, no tracking, no bloat. Totally free.

Updated 6 Jun 2026
Bronze41.4
Logto – User Authentication and Authorization icon

Logto – User Authentication and Authorization

Enable beautiful and secure user authentication, including passwordless, social login, single sign-on, multi-factor authentication (MFA), and more.

20+ installs·Updated 2 Apr 2025