Skip to content

Admin: SSO, SCIM & modules

Administration lives under Settings and is available to owners and billing admins.

Invite teammates by email and assign a role:

  • Owner — full control, including integrations and identity.
  • Billing admin — billing, invoicing, and the financial modules.
  • Timekeeper — their own time and expenses, on assigned matters.

Roles are coarse on purpose; record-level access is governed by the visibility model and matter assignments.

Acculio is modular. Turn features on per organization, and for per-seat modules, assign them to specific people:

  • Organization-wide modules (e.g. the ledger) need only a toggle.
  • Per-seat modules (e.g. the legal suite) are enabled for the org, then assigned to individual users.

Your plan sets the ceiling; every toggle is audited server-side.

  • Single sign-on (SSO) via SAML or OIDC — owner-managed, with IdP metadata and attribute mapping.
  • SCIM provisioning — generate a token to hand your identity provider so users are created and deprovisioned automatically.
  • Service clients — OAuth2 client-credentials for the case-app integration, using an acting-user header.
  • API keys & webhooks — programmatic access and a delivery log. Secrets are shown exactly once on creation.

Trust, ledger, and audit records are immutable by law and by database privilege. Place legal holds to block purging, and use purge preview before removing only soft-deleted, aged, hold-free records with no financial footprint.