STSAML Test Kit
SSO reference application

SAML Test Kit for any identity provider

A sample application for testing SAML 2.0 SSO integrations — works with Entra ID, Okta, Google Workspace, OneLogin, PingFederate, or any other SAML 2.0 compliant provider.

For testing only

  • This application is intended for testing purposes only. Use a test identity provider tenant or environment when trying out the SSO flow — do not point it at a production tenant.
  • The database backing this app is currently hosted in the US region only. No other region is supported at this time.

Get single sign-on working in three steps

  1. 1

    Create a local account

    Use the Sign in button above to sign in or register. This account is what a SAML NameID gets matched against, so its email must match the identity your identity provider asserts.

  2. 2

    Add a SAML connection

    Go to SAML Configuration and choose how sign-in is initiated: SP-initiated to have SAML Test Kit generate the authentication request and redirect to your identity provider, or IdP-initiated to have it receive assertions directly from your identity provider without generating a request. Works with any SAML 2.0 provider — Entra ID, Okta, Google Workspace, OneLogin, PingFederate, or a self-hosted implementation.

  3. 3

    Test the sign-in flow end to end

    Test from a private/incognito browser window. For SP-initiated connections, use the connection's Login URL to start sign-in; for IdP-initiated connections, launch it from your identity provider's own application portal.