# Prevent non-SAML users from joining your organization

**Version:** v2026-09-03

**Published:** September 25, 2026

Organization administrators can now prevent non-SAML users in the SAML SSO settings in [Manage](https://www.sanity.io/manage/org/settings/saml). The setting appears once SAML SSO is enabled, and is available on Enterprise plans.

![The SAML SSO settings page in Manage, with the Prevent non-SAML users toggle turned off and a Review non-SAML access section showing how many members sign in outside SAML.](https://cdn.sanity.io/images/3do82whm/next/5b580e38aa2918572601164b1b51e1c1d0a903a3-1826x1126.jpg)

When you turn on the setting, only a SAML identity from your organization can accept an invitation or request access. The setting is off by default.

It does not remove existing non-SAML users. To enforce SAML for all members, you must also remove these users. [See the guide for further details](https://www.sanity.io/docs/platform-management/prevent-non-saml-users).

Sanity does not merge duplicate accounts, so first make sure that each SAML identity has the correct roles. Contact your Sanity account team for help with this step.

