TU Darmstadt Shibboleth Identity Provider (SAML 2.0 metadata)
The university's own SAML 2.0 identity provider, operated by the Hochschulrechenzentrum (HRZ). Verified live 2026-09-01 (HTTP 200, 15,371 bytes of XML): entityID https://idp.hrz.tu-darmstadt.de/idp/shibboleth, shibmd:Scope tu-darmstadt.de, an IDPSSODescriptor advertising SAML2 HTTP-POST, POST-SimpleSign, HTTP-Redirect and SOAP/ECP bindings at login.tu-darmstadt.de, signing certificates, mdui:DisplayName in German and English, and technical/support contacts at hrz.tu-darmstadt.de. The same document is served from https://login.tu-darmstadt.de/idp/shibboleth. This is browser-mediated web SSO, not an API authorization server — there is no OAuth or OIDC token endpoint — but it is machine-readable metadata the institution itself authors and publishes, and it is the single strongest institution-operated surface in this profile.