meshStack supports SSO via OIDC and SAML. The most popular option is Entra ID. The setup procedure is well-documented, but involves manual steps.
I'd prefer if this was a self-service configuration, for example in the Admin Area -> Integrations section.
Setting up SSO requires customers to share a secret with meshcloud to configure keycloak. An automated solution for rotating this secret in keycloak would greatly enhance the lifecycle management and improve the security posture of the meshStack platform within the customer's IT landscape.