Single Sign-On payload

Ok, let's see if someone can guide me in the right direction or help with understanding how this payload works.
from very little info that's available in JAMF documentation or Apple this payload supposed to help with applications or sites that use SSO, by knowing your user ID is already part of your MDM profile so when I am launching an APP let's say Box or Smartsheet or WebeX, because I have this payload configured the app should know to go to our SSO provider(Azure) and hopefully have my name already prefilled since its part of the profile?

I think the app itself needs to be able to support that payload if I am understanding this correctly, but is there a list of Apps that do?
Is this the way it is supposed to work?
Any other comments on this payload, are you using it and how?