SSO

For enterprise admins

Sign into your Workspace with your face, not a password.

Federate Google Workspace (and soon Microsoft 365, Slack, Zoom) to WinkKey biometric authentication. Your team unlocks Gmail, Drive, Calendar with Face ID, Touch ID, Windows Hello, or Fingerprint—no codes, no authenticator apps, no SMS.

Request access → How it works ↓

Passwordless across the workspace

Once you federate, every Google service—Gmail, Drive, Docs, Calendar, Meet—signs in with the same biometric your team already uses to unlock their phone or laptop. No more recovery flows, no more reset tickets.

Faster than 2-step verification

A glance at your camera replaces typing 6-digit codes from Authenticator. Stronger than TOTP and SMS, and four taps shorter. Onboarding new hires takes a single device enrollment.

One identity layer for every SaaS

Google today, Microsoft 365, Slack, Zoom, and any other SAML SP next quarter—same biometric, same identity. Disable a user once in Wink, they're locked out of every federated app within seconds.

How it works

Setup is a one-time, ~15-minute flow for your IT admin. Your end users do nothing different on day one—they just notice they no longer get prompted for codes.

1

Sign up

Redeem an invite code we sent you. We provision a pending tenant + WinkKey API key for your domain. Save the key—you'll use it to come back later.

2

Set up Google admin

Follow our step-by-step guide to create a third-party SSO profile in your Google Workspace, assign it to a pilot group, and disable Post-SSO challenges. Google generates a profile ID and ACS URL during this step.

3

Activate your tenant

Come back to your portal with your Google profile ID, the ACS URL Google generated, and the email mapping for your pilot users. Once activated, your team signs in with biometric.

4

Manage users

Add or remove users from the mapping anytime. Revoke a user and they're locked out of every federated app within seconds. No code changes, no re-deploy.

Request access

Tell us about your workspace. We'll provision a tenant key for you, and email you the next steps.

Format: WINKKEY-AAAA-BBBB-CCCC. Email hello@winkkey.net if you need one.

The domain you use for Google Workspace (e.g. acme.com).

A Workspace admin we can email setup instructions and approval status to. Used as the audit identity for your API key.

Optional. User count, timeline, other SaaS you'd want federated next, etc.

By submitting, you agree we'll contact you about your SSO setup. We don't share your domain or contact info.

Already onboarded? Setup guide → · Activate → · Manage →

Available today Google Workspace
Roadmap Microsoft 365 · Slack · Zoom · Salesforce
Custom needs? hello@winkkey.net