Skip to content
  • Docs
  • Security
  • Reference

Configuring Sorcerer Sign-On

Connect your ministry identity provider, or your coven's shared broomstick password, to SpellOps.

SpellOps DocsDocumentation · Jun 18, 2026 · 6 min read

Before you begin

Sorcerer Sign-On lets your team sign in to SpellOps with the identity provider your organization already uses, whether that is a ministry directory or a coven's shared broomstick password. This page explains how to connect it.

You need administrator rights in SpellOps and in your identity provider. Create a new application in the provider, copy its metadata into the Sorcerer Sign-On settings, and map at least one group to the SpellOps administrator role, so nobody is locked out of their own tower.

A shared broomstick password works, but we recommend replacing it with individual accounts as soon as practical. Shared passwords make audit trails less useful, and someone always writes them on the broomstick. Once the connection works, test it with an account that is not an administrator before inviting everyone else.

Find out where your parcels are going.

See Arcane Observability on your own network in a 30-minute session.