Enterprise Managed Users is now generally available
Enterprise Managed Users (EMU) is now generally available, giving organizations full control over Vercel accounts on verified domains through their identity provider. Managed users authenticate via SAML SSO only, with automatic account provisioning and lifecycle management through Directory Sync.
Enterprise Managed Users (EMU) gives organizations full control over the Vercel accounts tied to their verified domains. It makes the organization's identity provider the single source of truth for authentication and account lifecycle, so accounts on company domains are governed centrally rather than owned by individuals.
Now generally available
Requires an Enterprise plan, enforced SAML SSO, active Directory Sync, and at least one verified domain.
In Beta, available on request
To request access, contact your account team.
Learn more in the and docs.Enterprise Managed UsersHobby team transition
Managed users sign in through SAML SSO only. All other login methods, including email OTP, GitHub, Google, and GitLab, no longer work for managed accounts.IdP-enforced sign-in:
: Directory Sync creates, updates, and deprovisions managed users automatically, keeping accounts in sync with your IdP.SCIM provisioning & lifecycle
: Profile settings are managed through your IdP rather than by the individual.Owned by your organization
Turn EMU on for a verified domain in Team Settings under Security & Privacy, and extend it across multiple eligible teams in a single step.Self-serve enablement:
: Members with an existing personal account on a newly managed domain are guided to add a personal email (keeping their hobby projects) or delete the account, then continue to their work through SSO.Hobby team transition
: Personal accounts with no content or activity are archived automatically, and their owners land in a new managed account at their next SSO sign-in.Automatic conversion
Source: original entry ↗