Full threadjf·As someone who works a lot with SSO, please avoid SAML for as long as you can. SAML is a Pandora’s box of pain and security vulnerabilities. My advice is to implement OIDC instead, avoiding SAML until you have a customer willing to pay a lot for it.View on HN