- Integrated Organization Discovery by Domain into Self-Service SSO, automatically syncing verified domains to organization records for email‑based login.
- Verified domains are applied to both the connection and the organization, and can be associated with new connections without re‑doing DNS verification.
- Enforces a 1:1 domain-to-connection mapping to ensure deterministic routing to the correct IdP.