Overview
StatusStack supports multiple authentication methods to fit your security requirements, from simple email/password to enterprise SSO.Authentication Methods
Email & Password
Traditional username/password authentication
Google OAuth
Sign in with your Google account
Microsoft OAuth
Sign in with Microsoft/Azure AD
Passkeys
Sign in with a fingerprint, face, screen lock, or security key
SAML 2.0
Enterprise single sign-on (Enterprise plan)
Email & Password
Creating an Account
1
Sign Up
Visit statusstack.com/register
2
Enter Details
3
Verify Email
Check your email for verification linkClick link to activate account
4
Complete Setup
Set up your first team and Stack
Password Requirements
Minimum requirements:- 8 characters minimum
- At least one uppercase letter
- At least one number
- At least one special character
- 12+ characters
- Use a password manager
- Unique password (not reused)
- Enable 2FA for added security
Password Reset
1
Request Reset
2
Check Email
Reset link sent to your emailValid for 1 hour
3
Set New Password
Click link and enter new password
OAuth Authentication
Google Sign-In
1
Click Google Sign-In
On login page, click “Sign in with Google”
2
Select Account
Choose your Google account
3
Grant Permissions
Allow StatusStack to:
- View email address
- View basic profile info
4
Logged In
Automatically redirected to dashboard
- No password to remember
- Automatic security from Google
- Faster login
- Google 2FA supported
Microsoft Sign-In
1
Click Microsoft Sign-In
On login page, click “Sign in with Microsoft”
2
Enter Microsoft Email
Use your work or personal Microsoft account
3
Authenticate
Complete Microsoft authenticationSupports Azure AD and MFA
4
Logged In
Redirected to dashboard
- Integrates with Azure AD
- Respects conditional access policies
- Supports multi-factor authentication
- Centralized account management
Passkeys
Sign in with a fingerprint, face scan, screen lock, or hardware security key. Works on the customer dashboard and the MSP Console. No plan gate. A successful passkey login also satisfies 2FA — you are not asked for an authenticator or SMS code after it succeeds.You’ll need an account password before you can add a passkey. Google, Microsoft, or magic-link-only accounts must set a password first. Passkeys work on
statusstack.com only — not MSP white-label custom domains, and not the Statamic CMS admin.What you’ll see
Add a passkey (customer dashboard)
1
Open Passkeys
Settings → Profile Settings → Passkeys
2
Confirm your password
Re-enter your current account password.
3
Add a passkey
Complete the browser or OS prompt (biometrics, screen lock, or security key).
The passkey appears in the list with its name and creation date. Remove it anytime from the same tab. Adding another passkey (laptop + hardware key) is supported.
Two-Factor Authentication (2FA)
Add an extra layer of security:Enabling 2FA
1
Open Security Settings
Dashboard → Settings → Security → Two-Factor Authentication
2
Choose Method
- Authenticator App
- SMS
Recommended
- Install authenticator app (Google Authenticator, Authy, 1Password)
- Scan QR code
- Enter 6-digit code
- Save backup codes
3
Save Backup Codes
Important: Store backup codes securelyUse if you lose access to 2FA device
4
2FA Enabled
Required on every login
Using 2FA
Login flow with 2FA:- Enter email and password
- Prompted for 6-digit code
- Open authenticator app
- Enter current code
- Logged in
- Optionally mark device as trusted
- Skip 2FA for 30 days on that device
- Can revoke trust anytime
SAML 2.0 SSO (Enterprise)
Enterprise single sign-on integration:Supported Identity Providers
- Okta
- Azure AD
- Google Workspace
- OneLogin
- Auth0
- JumpCloud
- Custom SAML 2.0 providers
SAML Setup
1
Contact Sales
SAML SSO requires Enterprise planEmail: sales@statusstack.com
2
Configure IdP
In your identity provider:
3
Provide Metadata
Share SAML metadata XML with StatusStack:
- IdP Entity ID
- SSO URL
- Signing Certificate
4
Configure StatusStack
StatusStack team configures:
- SAML endpoint
- Attribute mapping
- Domain verification
- JIT provisioning (optional)
5
Test Connection
Test SSO flow:
- Visit statusstack.com/login
- Enter work email
- Redirect to IdP
- Authenticate
- Return to StatusStack
Just-in-Time (JIT) Provisioning
Auto-create accounts on first login:- No manual user creation
- Automatic onboarding
- Consistent with IdP
Session Management
Session Duration
Default session length:- Web: 7 days (with activity)
- Mobile: 30 days
- API tokens: No expiration (revocable)
- Enterprise: Configure custom session duration
- Security → Session Settings
Active Sessions
View and manage sessions: Dashboard → Settings → Security → Active SessionsSecurity Best Practices
Use Strong Passwords
Use Strong Passwords
Requirements:
- 12+ characters
- Mix of uppercase, lowercase, numbers, symbols
- Unique (not reused elsewhere)
- Use a password manager
Register a passkey
Register a passkey
Benefits:
- Phishing-resistant sign-in
- Satisfies 2FA on successful login
- Works on customer dashboard and MSP Console
Enable 2FA
Enable 2FA
Mandatory for:
- Organization owners
- Admins
- Users with access to production Stacks
Use SSO (Enterprise)
Use SSO (Enterprise)
Benefits:
- Centralized authentication
- Automatic deprovisioning
- Enforced security policies
- Audit logging
Review Active Sessions
Review Active Sessions
Monthly:
- Review active sessions
- Revoke unknown devices
- Check login locations
- Verify login times
Monitor Login Activity
Monitor Login Activity
Authentication logs track:
- Successful logins
- Failed attempts
- Password changes
- 2FA events
- Passkey registrations and passkey logins
- OAuth connections
Troubleshooting
Can’t Login
Issue: “Invalid credentials” error Check:- Email address is correct
- Password is correct (case-sensitive)
- Account is verified (check email)
- Account is not locked
- Reset password
- Check spam folder for verification email
- Contact support if account locked
2FA Code Not Working
Issue: “Invalid code” error Check:- Clock on device is synchronized
- Entering current code (refreshes every 30s)
- Using correct authenticator app
- Use backup code
- Disable and re-enable 2FA
- Contact support for 2FA reset
Passkey Not Working
Issue: Browser does not offer a passkey, or sign-in fails Check:- You registered a passkey for this account
- You are on
statusstack.com, not an MSP white-label custom domain - The device or security key that holds the passkey is available
- You have a password if you still need to add a passkey (OAuth or magic-link-only accounts)
- Sign in with email and password (and 2FA if enabled), then add a passkey
- MSP users: manage passkeys at Settings → Security, not the customer profile page
- Try a different Chromium or Safari browser that supports passkeys
OAuth Login Failing
Issue: “Error connecting to [Google/Microsoft]” Check:- Pop-ups are allowed
- Third-party cookies enabled
- Not using private/incognito mode
- Allow pop-ups for statusstack.com
- Try different browser
- Use email/password instead
SAML Not Working
Issue: “SAML authentication failed” Check:- SAML is configured for your domain
- IdP metadata is current
- Certificates not expired
- Contact your IT administrator
- Email support@statusstack.com with:
- Organization name
- Email address
- Screenshot of error
Next Steps
Security Settings
Configure security settings
Team Management
Invite team members
Subscription Plans
Compare plans

