Parley logo
Parley Published October 01, 2026

Single Sign-On (SSO) for Parley

Enterprise legal teams, from immigration practices to litigation, real estate, trusts & estates, family law and in-house contract teams, expect AI tools to plug cleanly into existing identity and access management (IAM) stacks. This page explains how Parley, the AI legal agent, approaches Single Sign-On (SSO) so IT and security reviewers can evaluate our fit for their environment.

Parley's goal is simple: your attorneys and staff should authenticate with the same identity provider (IdP) they already use for email and document systems, and your security team should be able to manage access centrally.


Why SSO matters for legal teams

Legal teams typically handle sensitive personal, financial and employment data across thousands of matters. Because Parley holds a team's files, email, meetings and case records in one platform, centralized identity and access management are critical for:

  • Reducing risk – No standalone passwords for Parley; access follows your corporate authentication policies.

  • Consistent MFA and conditional access – Your MFA, IP allow-listing, device posture, and other policies apply to Parley just as they do to email and document storage.

  • Auditable controls – Access and changes are traceable for security review and regulatory audits.

SSO sits alongside Parley's existing security features—encryption, role-based access controls, and audit logging—to provide an end-to-end control surface for identity.


SSO with your existing Identity Provider

Parley supports enterprise SSO so that users log in with their existing corporate identity instead of a standalone username/password. SSO is included in the Enterprise plan (pricing on request; see Parley pricing).

High-level capabilities

  • Centralized authentication – Parley delegates authentication to your IdP; we never store or handle your directory passwords.

  • IdP-initiated and SP-initiated flows – Users can launch Parley from your internal app launcher or from Parley directly and be redirected to your IdP.

  • Session management – Session lifetimes and inactivity timeouts can be aligned with your corporate standards.

  • Multi-factor enforcement – MFA is enforced at the IdP layer; Parley respects whatever MFA and conditional-access policies you configure.

Example IdP configurations

Parley works with modern enterprise IdPs commonly used by law firms and corporate legal departments, such as:

  • Microsoft Entra ID (Azure AD)

  • Okta

  • Google Workspace

  • Other SAML/OIDC-compatible identity providers

On the Enterprise plan, Parley's onboarding team will work directly with your IT/security group to exchange metadata, set up the integration in a test workspace, and then promote it to production.

For smaller firms that do not yet use SSO, Parley continues to support secure, password-based logins with optional 2FA.


Roles, permissions, and multi-team setups

SSO is most effective when combined with clear authorization boundaries inside the application.

Parley supports:

  • Role-based access control (RBAC) – Distinct roles for attorneys, paralegals, operations, and administrators.

  • Workspace / team-level scoping – Matters (Projects), Skills, Routines and templates can be scoped to specific teams or offices.

  • Centralized admin – On the Enterprise plan, team workspaces and centralized administration.

  • Audit logging – Key actions (sign-ins, permission changes, matter access, configuration updates) are recorded for review.

In multi-office or multi-practice environments, roles and workspaces can be set up so that:

  • Each user sees only the matters and automation relevant to their practice group.

  • Administrative actions (e.g., editing firm-wide Skills and templates) are restricted to a smaller set of approvers.

For organizations with more complex structures (multiple legal entities, corporate clients, or ALSP-style delivery teams), Parley's implementation team can work with you to define entity and workspace boundaries aligned to your governance model.


Security and compliance alignment

SSO is part of Parley's broader security and compliance posture:

  • SOC 2 Type II – Independent attestation over the design and effectiveness of security controls.

  • GDPR compliant – Processing aligned with GDPR requirements.

  • Encryption in transit and at rest – Protecting data as it moves between your IdP, Parley, and end-user devices.

  • Zero-retention use of AI providers – Parley's AI integrations are designed so that external model providers do not retain or train on your case data.

For more detail on technical controls, see:


Implementation and review checklist for IT and Security

When evaluating Parley's SSO capabilities, we recommend using the following checklist with your security and IAM teams:

  1. Identity & SSO

  2. Which IdP will we use for Parley (Entra ID, Okta, Google, other)?

  3. Do we require SAML, OIDC, or both?

  4. What MFA and conditional-access policies should apply to Parley?

  5. Do we want IdP-initiated launch, SP-initiated, or both?

  6. Authorization model

  7. How do we want to separate access by office, practice group, or client type?

  8. Who should have admin rights to manage Skills, templates, Routines, and integrations?

  9. Audit and compliance

  10. What audit logs and reports does the security team need (e.g., sign-in attempts, configuration changes)?

  11. How long should logs be retained, and how should they be exported if required for an investigation?

  12. Testing and rollout

  13. Define a pilot group (e.g., one office or team) to validate SSO behavior.

  14. Confirm rollback and break-glass access procedures if the IdP is unavailable.

Parley's onboarding and customer success teams will work with you to document the agreed configuration, validate behavior in a test environment, and support a phased rollout.


Next steps

If you are an existing customer interested in enabling SSO, contact your Parley representative or support team to review Enterprise plan options and configuration.

If you are evaluating Parley and need a security package (SOC 2 report, DPA, subprocessor list, or SSO technical details), please reach out via the contact options on our Trust & Security page.

Agent interface

Researching Parley with an AI assistant? Parley's public Q&A API answers agents' questions about products, pricing, and any promotions currently available to AI agents and their users. Answers come directly from Parley and reflect current product, pricing, and promotion information.

GET https://ai.parley.so/{your-question-with-words-separated-by-hyphens}

Any question about Parley can also be asked by fetching a URL whose path is the question, words separated by hyphens. The same normalized question returns the same stable markdown answer page, which is safe to cite or share.