Put verified identity to work in your daily operations. Start by connecting your roster source (HRIS, student system, volunteer list) or upload a CSV. Map each group to roles that reflect real responsibilities—field tech, dispatcher, licensure admin, instructor. Turn on Single Sign-On for the apps your teams use every day, add Social Sign On where low-friction entry helps (contractors, volunteers), and require Multi-factor Authentication for sensitive roles. Choose passwordless options—passkeys or SSH keys—for admins and operators who need fast, secure entry. Set approval flows in Access Request Management so managers can grant or deny access in one click. Pilot with a small cohort, verify the onboarding link works on desktop and mobile, then roll out broadly.
Once people are active, keep access aligned with the work. Employees and partners request new permissions through a self-service portal; managers approve with duration limits baked in. Role Management ensures the right entitlements reach every connected app automatically. User Activity Monitoring gives you a clean record of sign-ins, changes, and admin actions; export these to your SIEM or hand them to auditors with Compliance Management. Use scheduled reviews to confirm who still needs what, and let expiring credentials trigger action—suspend access when a license lapses, prompt retraining before program access is renewed. Offboard with a single command that revokes tokens, ends sessions, and removes roles across systems. Handle edge cases quickly: merge duplicate accounts, reset a passkey fallback, or elevate temporary access for an incident lead.
For builders, plug identity into your stack without friction. Register your application, scope what it can read or write, and enforce API Access Management to allow only authenticated calls. Use OAuth/OIDC for sign-in, validate JWTs at the edge, and subscribe to webhooks that fire when roles change, accounts are created, or access is withdrawn. Provision users with SCIM so new hires land in the right groups on day one. In test, simulate MFA challenges, expired sessions, and role removals to confirm your app’s behavior is resilient. Ship features that respect roles—hide admin panels, restrict data exports, and log sensitive events by default.
Bring this into real programs. A workforce team gates course enrollment until an identity is verified and a prerequisite license is on file; completion flips a role that unlocks job placement tools. An emergency operations center spins up a deployment group, invites mutual-aid partners via Social Sign On, enforces MFA for command, and sunsets access after the incident. A licensing board streamlines renewals—submit proof, route to reviewers, and grant updated privileges when approved. A school signs staff and students into learning platforms with SSO, tracks usage, and meets audit requirements without manual spreadsheets.
Merit +
Custom
Unlimited merit sending
Unlimited merit sharing
Recipient access to merits via smartphone app and web
Same-day email and text support for administrators and recipients
Recipient access to Merit Opportunities
API & webhook access
Ability to access Merit+ Add-ons & premium services
Comments