SaaS License & Feature Checker Notion
Notion: SSO, SCIM & audit log plans
Notion SSO (SAML 2.0) starts on the Business plan; SCIM and the administrative audit log are Enterprise-only. First-party sources, no prices.
| Control | Availability | Minimum route |
|---|---|---|
| Enterprise SSO | Included | Business · SAML |
| SCIM / automated provisioning | Enterprise only | Enterprise |
| Administrative audit logs | Enterprise only | Enterprise |
Product scope
Notion workspace / organization. Plan ladder: Free, Plus, Business, Enterprise.
Market scope
Global English documentation (notion.com).
Admin controls
The three controls in detail
Availability, protocol where relevant, the minimum plan or add-on, the purchase path, one caveat, and the official sources.
Enterprise SSO
- Min. route
- Business
Notion SSO uses SAML 2.0 and is available on the Business plan; admins can enforce "Only SAML SSO." OIDC is not offered.
Official sources
- Notion pricing — Notion · checked 27 August 2026
- Configure SAML SSO — Notion · checked 27 August 2026
SCIM / automated provisioning
- Min. route
- Enterprise
The Notion SCIM API to provision and manage users and groups is Enterprise-only.
Official sources
- Notion pricing — Notion · checked 27 August 2026
Administrative audit logs
- Min. route
- Enterprise
The audit log is available to organization owners on the Enterprise plan; it retains 365 days of events, records only from the time of upgrade, and needs a custom SIEM integration for real-time streaming.
Official sources
- Audit log — Notion · checked 27 August 2026
Plans and add-ons referenced
Plan names are shown exactly as Notion documents them. No prices.
- FreeFree
- PlusPaid
- BusinessPaid
- EnterpriseEnterprise
Evidence boundary
CertPilot summarizes first-party vendor documentation for three admin controls — enterprise SSO, SCIM, and administrative audit logs. Plans and packaging change; confirm the current entitlement with the vendor before purchasing or changing a subscription. This is not pricing data, a recommendation, a security score, or a tenant inspection.
Methodology: each control is written from the official first-party sources listed above and human-verified on the checked date. Availability is normalized to included / enterprise-only / paid add-on; the purchase path is recorded separately. A control with no clear first-party answer is marked unclear, never guessed. Profiles are re-checked on a 90-day cadence and unpublished after 120 days without re-verification.