Configure Okta

Single sign-on for ShipScience

Supported features

  • SP-initiated SSO: users open ShipScience, enter their work email, and are sent to Okta.
  • IdP-initiated SSO: users launch ShipScience from their Okta End-User Dashboard.
  • Express Configuration: your Okta admin connects Okta to ShipScience in a few clicks, without exchanging keys or metadata.
  • Just-in-time provisioning and SCIM are not supported yet. ShipScience creates your users' accounts; SSO signs them in.

Requirements

  • An active ShipScience account with an assigned Customer Success contact.
  • Okta admin rights in your organization.
  • Your team members already exist as users in ShipScience (Account Settings → Users). Ask your ShipScience admin or Customer Success to add anyone who is missing before they sign in through Okta.

Configuration steps

  1. In the Okta Admin Console, go to Applications → Browse App Catalog, search for ShipScience, and select Add Integration.
  2. On the Sign On tab, select Express Configuration.
  3. Sign in to ShipScience's identity provider with the administrator login ShipScience Customer Success sent you, select your company when prompted, and approve the connection. This registers Okta as your company's identity provider in ShipScience.
  4. On the Assignments tab, assign the people or groups who should access ShipScience.
  5. Tell your ShipScience Customer Success contact that Express Configuration is complete. They confirm the connection on our side and enable single sign-on enforcement for your company, usually within one business day.

Signing in

  • From ShipScience: go to app.shipscience.com, enter your work email, and you are redirected to Okta. No ShipScience password is needed.
  • From Okta: select the ShipScience tile on your End-User Dashboard.

Notes

  • Only users who already exist in ShipScience can sign in. A user who is assigned in Okta but not present in ShipScience sees "no ShipScience user matches this login"; ask your ShipScience admin to add them.
  • Once single sign-on enforcement is enabled for your company, password and Google logins are refused for your users; all sign-ins go through Okta.
  • If a user is deactivated in Okta, they can no longer sign in to ShipScience through Okta. Removing their ShipScience access itself is done in ShipScience → Account Settings → Users.

Support

  • ShipScience: [email protected]
  • Include your company name and the email address of the user affected.

Did this page help you?