Enable Sign in with Microsoft or Google for Curri
This page helps IT allow work-account sign-in (OAuth). Users see the buttons in the app after you approve the Curri app and Curri enables your domain.
Overview
Why teams enable it
- Faster signup and login with work accounts.
- Curri does not store corporate passwords.
- Email and password still works when OAuth is off for a domain.
Data Curri receives
Scopes: openid profile email
- Display name, work email, stable provider user ID.
Curri does not get passwords, mail, calendar, Drive, OneDrive, or broad directory access.
After admin consent or app access, email your Curri contact with your company domain (for example @yourcompany.com). Curri turns on the Microsoft and Google buttons for that domain. Until then, affected users keep email and password.
Sign in with Microsoft
Work and school accounts only. Not personal Microsoft (MSA) accounts.
- App name
- Curri
- Application (client) ID
2f7b951e-4797-4b96-9990-687290d83089- Supported account types
- Multi-tenant
organizations(work and school). Not personal Microsoft accounts. - Redirect URI
https://app.curri.com/api/auth/callback/microsoft-entra-id- Scopes
openidprofileemail- Verified publisher
- Confirmed. Publisher questions: microsoft@curri.com.
Admin consent URL (optional)
Replace {tenant-id} with your Entra tenant ID.
https://login.microsoftonline.com/{tenant-id}/adminconsent?client_id=2f7b951e-4797-4b96-9990-687290d83089Entra ID checklist
- Find or add the Curri enterprise app (client ID above).
- Grant admin consent if required.
- Assign users or groups under Users and groups.
- Test at app.curri.com.
- Email Curri your company domain to enable the buttons.
Admin-approval errors before your tenant allows the app are expected. That is not a Curri outage.
Sign in with Google
Allow the Curri OAuth client in Google Workspace.
- App name
- Curri
- OAuth client ID
424961421374-kii8n31ma69nm5snmsttjk0t3qq0883f.apps.googleusercontent.com- Redirect URI
https://app.curri.com/api/auth/callback/google- Scopes
openidprofileemail
Google Admin checklist
- Security → Access and data control → API controls (or App access control).
- Allow Curri by client ID (copy field above).
- Mark Trusted for the right OUs or groups.
- Test at app.curri.com.
- Email Curri your company domain to enable the buttons.
Questions
OAuth enablement: your Curri account contact or support@curri.com (include your company domain).
Microsoft publisher verification: microsoft@curri.com.
Enterprise SSO (SAML or your IdP) is separate from Sign in with Microsoft or Google on this page. Contact your Curri account manager to set it up.