How it connects
Renttix supports enterprise single sign-on through two independent brokers, Clerk and WorkOS, which between them front the SAML and OIDC identity providers businesses actually use. Your users authenticate against your identity provider, and Renttix verifies the resulting token against the broker's published signing keys before establishing a session. That verification step is the security boundary. Renttix does not accept an assertion because it looks right — it validates the signature against the provider's key set, so a forged or expired token is rejected rather than trusted.
Why it matters
The security problem in most hire businesses is not passwords being guessed. It is leavers keeping access. Staff turnover in the industry is real, and when someone leaves, their accounts across a dozen systems are closed in whatever order somebody remembers. The rental system holds customer data, pricing and financial records, and it is rarely first on that list. Single sign-on collapses that to one action. Disabling someone in your identity provider ends their Renttix access at the same moment, because Renttix never held their password to begin with. It also removes the shared-login habit that grows in busy depots, since signing in with a personal company identity is easier than remembering a shared one — and that makes the audit trail mean something.
Key workflows
Sign in with company identity
Staff authenticate against your existing identity provider through SAML or OIDC rather than maintaining a separate Renttix password.
Revoke access in one place
Disabling a user in your identity provider ends their Renttix access immediately, so a leaver does not retain a working login into customer, pricing and financial data.
Cryptographically verified sessions
Tokens are validated against the identity broker's published signing keys before a session is created, so a forged or expired assertion is rejected rather than accepted at face value.
Single sign-on covers office and management users of the Renttix web application. Field staff sign in to the Renttix Field app separately with their own credentials, since drivers and engineers are frequently not part of a corporate directory — and their access is governed by the workforce seat and permission model instead.
Single sign-on FAQ
Renttix brokers enterprise SSO through Clerk and WorkOS, which front the mainstream SAML and OIDC providers. If your organisation uses a standards-compliant identity provider, it is very likely covered.
No. Single sign-on covers the web application used by office and management staff. Field staff sign in to the Renttix Field app with their own credentials, because drivers and engineers are often not in the corporate directory at all.
Disable them in your identity provider and their Renttix access ends with it. Because Renttix never held their password, there is no separate account left behind to remember to close.
Ready to modernize your rental operations?
Payments + deposits enabled • Quick setup • No credit card trial
