Restrict federated (IdP) login to members of one organization — via the Keycloak MCP server
Software EngineeringReleased 7 Oct 2026
Restrict FEDERATED (external identity provider) login to members of one organization on a Phase Two hosted Keycloak - the user authenticates at their own company's IdP and only gets in when they belong to the organization the application named in account_hint - driven through the Keycloak MCP server. Use this whenever someone asks for "corporate organization restriction", "restrict SSO login to a team/tenant", "only let this customer's staff into their own org", "organization-restricted corporate login", "gate IdP login by org membership", or a "post-broker organization check". Covers the organization-owned IdP link that makes the gate work at all, authoring and binding a…
Preview
Loading…
Evaluations
Forsy Agent
Skill DeltaForsy agent eval in progress…
Forsy - Restrict federated (IdP) login to members of one organization — via the Keycloak MCP server