Skip to main content

SSO for Marketplace & Meal Program

Single Sign-On for ezCater Marketplace & Meal Program

Single Sign-On (SSO) enables users to access ezCater and/or Meal Program from any device with a single entry of their Identity Provider (IdP) user credentials.

SSO use cases

  • Enhanced security: SSO ensures that only authorized users can log in

  • Simplified user management: If auto-provisioning is enabled, user accounts will automatically be created when a user logs in via SSO for the first time. If SSO is required, when an employee leaves the company, their access to ezCater/Meal Program can be revoked immediately through the identity provider, reducing the risk of unauthorized access.

  • Improved user experience: Eliminates the need for users to remember separate passwords for ezCater/Meal Program

SSO integration availability

  • Meal Program and Enterprise Account customers who use an identity provider (IdP) at their company

  • Integrates with any identity provider (IdP) that supports a SAML protocol

Supported SSO functionality

  • Desktop & mobile: SSO is supported on mobile and desktop devices

  • Multiple domains: SSO configurations can support multiple domains

  • Auto-provisioning/just-in-time provisioning: Optional setting that automatically creates a user Marketplace or Meal Program account when they log in without a pre-existing account

  • Require SSO/force authentication: Optional setting that requires users with matching domains to sign in SSO, meaning they cannot use username/password to log in

SSO configuration process

  • The ezCater Meal Program SSO Form provides the ability to set up and update SAML and SCIM configurations. The form is intended to be completed by an IT contact. Once filled out, ezCater’s Integrations & Implementations team will email with confirmation that the SSO setup is ready to be tested on or before the date submitted with steps to test the SSO setup

SSO user experience

  • For users assigned to the app, Meal Program and/or ezCater marketplace are found within their company’s identity provider (IdP) dashboard/bookmarks

  • Users login with their company’s identity provider credentials, which eliminates the need for users to remember separate passwords for ezCater and/or Meal Program

  • For companies with the setting to require SSO enabled, if a user tries to login with username and password the page will redirect them to the SSO sign in page and state “Your company requires you to use Single Sign On”

  • For companies with the setting to autoprovision new users enabled:

    • Meal Program : Users are prompted to create their account when logging in for the first time and select their drop location

    • ezCater Marketplace: Users are prompted to create their account when logging in for the first time and add a phone number. Admin individually adds users to groups, non-company wide spending policies, and adjusts roles. Admin does not need to verify users in the Admin Portal.

Did this answer your question?