Product

From pilot to hospital-wide use, without another user directory

Aram Zegerius

Aram Zegerius

Technical conscience

Most healthcare professionals will never see this feature. They only notice that they can sign in with their hospital account. Behind that simple login, Ask Aletta automatically creates and manages user accounts through the organisation's identity provider. When the pilot expands, IT does not have to maintain a separate list of Ask Aletta users.

One place for users and access

When a new employee is given access to Ask Aletta through the identity provider, their Ask Aletta account is created automatically. If the employee changes roles, Ask Aletta updates their permissions. If the hospital withdraws access, their access to Ask Aletta ends as well.

This is automatic user provisioning. The hospital records access once in its own system, and Ask Aletta uses that information. An IT team does not have to process the same change or departure separately in Ask Aletta.

Inviting a few users by hand works during a small pilot. It becomes a recurring task once several departments or locations join. An account can also remain active after someone changes roles or leaves the organisation. Ask Aletta follows the changes recorded in the central directory.

Sign in under the organisation's policies

Employees use Single Sign-On to access Ask Aletta with their existing work account. The connection uses SAML or OIDC, common standards for SSO. These employees do not need a separate Ask Aletta password.

The hospital remains in control of its password rules and multi-factor authentication requirements. If it requires MFA through its own identity provider, the same check applies when an employee signs in to Ask Aletta; MFA can also be configured within Ask Aletta itself, including for accounts that use SSO.

Employees get the same sign-in process they already know. IT does not have another set of passwords and recovery flows to manage.

The difference becomes visible when a pilot expands. New colleagues receive their account without a separate round of invitations, and IT continues to manage permissions in the same place. Even when several departments join, nobody has to review the Ask Aletta accounts one by one.