Hello there!

Need Help? We are right here!

miniOrange Email Support

Thanks for your inquiry.

If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com

Single Sign On for Thinkific with JWT(JSON Web Token)
miniOrange provides a ready to use solution for Thinkific. This solution ensures that you are ready to roll out secure access to Thinkific to your employees within minutes.


Thinkific provides a platform that allows businesses or people to create and deliver online courses without any design or technical expertise. It allows its users to use their existing resources to set up online courses using an easy to use interface. Thinkific offers tools for setting up courses, managing students, payments, and marketing to reach a bigger audience. Its a one-stop shop for all your Online Course needs.

miniOrange Identity Management Features

miniOrange supports both IdP (Identity Provider) and SP (Service Provider) initiated Single Sign On (SSO)

We can connect with any External IDP/Directory

miniOrange provides user authentication from external directories like ADFS, Microsoft Active Directory, Azure AD, OpenLDAP, Google, AWS Cognito etc. It also provides user authentication with other IDPs like Shibboleth, PING, Okta, OneLogin, KeyCloak and many more.

Can't find your IDP ? Contact us on idpsupport@xecurify.com. We'll help you set it up in no time.

Single Sign On For Thinkific

Thinkific provides a platform that allows businesses or people to use their existing resources and knowledge to create and deliver online courses. Companies/People usually have an existing application/site where student credentials are already stored. Thinkific allows its users to use their existing credentials to log in to their Thinkific platform using JWT (JSON Web Token). An interface needs to be created on the existing site that can generate that JWT token and log students into Thinkific using their existing credentials. miniOrange has a solution to this problem.


Thinkific users want a continuous and seamless access to their portal through their existing accounts. They don't wish for their students to have a separate set of credentials for logging in to Thinkific. Thinkific provides a way for its users to allow their students to log in to the platform seamlessly. But, an interface needs to be created which would allow this.


miniOrange provides an integrated solution where a logged in user's existing session can be used to log the users into Thinkfic by creating a valid JSON Web Token ( JWT ). Thinkific user is relieved from maintaining separate user credentials for its students.

As a result, miniOrange Single Sign-On (SSO) solution is implemented by installing miniOrange IDP plugin. Thinkific users can now login into Thinkific platform using their existing credentials.


Obtain the following information from Thinkific.

  • JWT Endpoint URL: Example : https://{your-school}.thinkific.com/api/sso/v2/sso/jwt?jwt=
  • The API Key ( Shared Secret )

Step by step guide to set up Thinkfic as SP and miniOrange as IDP :

    Step 1:Configure External IDP in miniOrange(optional)

  • To login to Thinkfic through the existing Application, go to Identity Provider tab in the left hand navigation menu.
  • Thinkfic Single Sign-On (SSO): add-identity-provider

  • Here you can configure any application of your Choice.
  • Note: you need to Send first_name and last_name as configure attributes
  • Thinkfic Single Sign-On (SSO): send-configured-attributes

  • To setup OKTA as Identity provider Click Here.
  • To setup Azure AD as Identity provider Click Here. Look for Configure Azure AD through Enterprise Applications.
  • Step 2: Configure Thinkfic Application in miniOrange

  • Login to miniOrange Admin Console.
  • Go to Apps >> Manage Apps Click Configure Apps button.
  • Thinkfic Single Sign-On (SSO): saml apps

  • Select External App/JWT App
  • Thinkfic Single Sign-On (SSO): saml jwt app

    Thinkfic Single Sign-On (SSO): add jwt app

  • In Add Apps tab enter the values and click on Save.
    Custom Application Name Choose appropriate name according to your choice.
    Description App appropriate description according to your choice.
    Redirect-URL JWT Endpoint fetched from JWT in the previous step.
  • To configure App secret go to Edit against your configured app, Apps>>Select your app>>Edit
  • Thinkfic Single Sign-On (SSO): edit-jwt-app

    Thinkfic Single Sign-On (SSO): edit-jwt-app

    App Secret The API Token fetched from Thinkific dashboard
    Signature Algorithm Choose HS256
  • Click on Save
  • Now, You can access Thinkific Account Using IDP credentials through the Single-sign-on URL as shown in image above.

We offer Security Solutions of Single Sign-On, Two Factor Authentication, Fraud Prevention and much more.

Please call us at +1978 658 9387 (US), +91 77966 99612 (India) or email us at info@xecurify.com