Here are some of my experiences with trying to to implement SSO on Plone6 (Classic) two years ago.
Also possibly interesting, in case you haven't already seen...
Plone Foundation Code of Conduct