# Start single sign-on

Source: https://immiscible.fly.dev/docs/api/get-sso-start

`GET /sso/start`

`?workspace=<slug>`, or the person's work email. Redirects to the identity provider with PKCE, state and nonce.

## Authentication

Public. No credential. Public routes are rate limited per address. A browser redirect in the single sign-on flow. The state and nonce are bound to a short-lived cookie.

## Request

curl:

```bash
curl "https://immiscible.fly.dev/sso/start"
```

Node:

```ts
const res = await fetch('https://immiscible.fly.dev/sso/start', {
});
console.log(res.status, await res.text());
```

Python:

```python
import requests

res = requests.get(
    "https://immiscible.fly.dev/sso/start",
)
print(res.status_code, res.text)
```
