OSINTverse

Enterprise onboarding

Set up a SearchIn team with SSO, MFA, roles, provider controls, and audit export.

Share this guide with your security or IT team when moving investigations onto an OSINTverse company workspace.

What you get

A shared wallet, role-based access, optional company SSO and authenticator MFA, provider allowlists, spend caps, and searchable audit history. Personal accounts stay separate until you join a team.

Before you start

You need an OSINTverse account. One owner creates the team; everyone else joins by invite.

  1. Sign in at osintverse.com/login
  2. Open Dashboard → Team
  3. Create a team and switch into it (header workspace switcher)

Roles

Owners and admins invite people by email. Choose a role that matches the job:

RoleCan searchCan billCan inviteCan manage SSO / controlsCan export audit
OwnerYesYesYesYesYes (with queries)
AdminYesYesYesYesYes (with queries)
MemberYesView
AnalystYesView
BillingYesView
AuditorExport (no query text)

Typical setup: one owner, one customer admin, analysts for investigators, billing for finance, auditor for compliance.

Company SSO (optional)

On TeamEnterpriseCompany SSO (OIDC).

Ask your identity provider admin for:

  • Work email domain (for example company.com)
  • OIDC issuer URL
  • Client ID and client secret

Register this redirect URI in Okta, Entra ID, Google Workspace, or similar (use your chosen provider ID, for example okta-acme):

https://osintverse.com/api/auth/sso/callback/{providerId}

Then fill in the form on Team and register the provider.

Sign-in: /loginCompany SSO → enter a work email on that domain → continue at your IdP.

Access controls (optional)

Same Enterprise section:

  • Require company SSO — magic-link sign-in is blocked for that domain and team members; use Company SSO only.
  • Require authenticator MFA — people must enable an authenticator app under Profile before they can search.
  • Allowed providers — limit which SearchIn sources the team can use.
  • Monthly spend cap — stop team searches when UTC monthly spend hits the cap.

Turn on SSO enforcement only after at least one admin has signed in successfully with SSO.

Billing and API keys

  1. Switch to the team workspace.
  2. Billing — top up the shared wallet (owners, admins, billing).
  3. API keys — create keys while the team is selected so they bill the team.

API automation is not blocked by MFA. Human search in the UI is.

Audit export

On Activity, auditors and admins can export search history as CSV. Owners and admins can optionally include query text.

On this page