Multi-Tenant SSO & Identity
Lead developer
I rebuilt the platform's sign-in as one multi-tenant service. Each client signs in its own way (OIDC, SAML 2.0, LDAP or password), and every path ends in the same audited session. It handles GxP e-signature re-authentication and single sign-on into connected analytics tools. I also built a SAML identity provider with passkey sign-in.
- 2.65 s → 0.44 s
- password sign-in, ~6× faster
- 4
- sign-in methods, chosen per client
- Passkeys
- in the SAML identity provider
Python / FastAPI / SAML 2.0 / OIDC / WebAuthn
