Docs/Enterprise Deployment

Enterprise Deployment

WorkOS SSO, SCIM, RBAC, tenant isolation, and compliance.

WorkOS SSO setup

NOME supports Okta, Microsoft Entra ID, Google Workspace, and Ping Identity through the WorkOS enterprise identity seam. SSO is configured through the enterprise setup surface.

After WorkOS authentication, the broker mints or exchanges into the canonical Nome session, ensuring existing bootstrap and client assumptions are preserved.

SCIM directory sync

Automated provisioning and de-provisioning with org-aware lifecycle controls. When an employee leaves, access to NOME and all data in their context is revoked.

SCIM ingestion uses per-connection bearer tokens stored as hashes. Directory-to-role and directory-to-policy-tag routing is reversible from the control plane.

Role-based access control

Platform roles and org roles are Nome-owned. Administrators define which departments access expensive reasoning models vs cost-effective tiers.

WorkOS provides the identity and group membership signals. NOME maps those into entitlements, surface access, vertical availability, and admin capabilities.

Tenant isolation architecture

Cryptographic data boundaries ensure proprietary codebases, financial data, and communications are strictly isolated between tenants.

Tenant resolution is org-first, not vertical-first. Marketplace visibility, access objects, and release channels do not bypass tenant controls.

Data retention and governance

Customer retention terms, enterprise onboarding, release channels, and connector scopes are governed by your account or enterprise agreement plus platform configuration.

NOME separates audit/compliance trails from product telemetry and evaluation traces. Evidence, approvals, and receipts are separate from analytics.

Audit trails and run receipts

Every NOME run produces a complete audit trail. Receipts, tool calls, approvals, and artifacts are logged across surfaces and attached to canonical work items.

The durable run event log supports deterministic replay. Evidence passes and run receipts are designed for compliance review and security audits.

Ready to try it?

Open NOME

Futures, foreign currency, and options trading contains substantial risk and is not for every investor. An investor could potentially lose all or more than the initial investment. Risk capital is money that can be lost without jeopardizing one’s financial security or lifestyle. Only risk capital should be used for trading and only those with sufficient risk capital should consider trading. Past performance is not necessarily indicative of future results.

Hypothetical or simulated performance results have certain limitations. Unlike an actual performance record, simulated results do not represent actual trading. Also, since the trades have not been executed, the results may have under- or over-compensated for the impact, if any, of certain market factors, such as lack of liquidity. Simulated trading programs in general are also subject to the fact that they are designed with the benefit of hindsight. No representation is being made that any account will or is likely to achieve profits or losses similar to those shown.

NinjaTrader® is a registered trademark of NinjaTrader Group, LLC. No NinjaTrader company has any affiliation with the owner, developer, or provider of the products or services described herein, or any interest, ownership or otherwise, in any such product or service, or endorses, recommends or approves any such product or service.

Nomad Maraud may receive compensation when users register through partner links. This does not constitute a recommendation to trade futures or open a brokerage account.

NOME