Overview
StatusStack supports multiple authentication methods to fit your security requirements, from simple email/password to enterprise SSO.Authentication Methods
Email & Password
Traditional username/password authentication
Google OAuth
Sign in with your Google account
Microsoft OAuth
Sign in with Microsoft/Azure AD
SAML 2.0
Enterprise single sign-on (Enterprise plan)
Email & Password
Creating an Account
Sign Up
Visit statusstack.com/register
Password Requirements
Minimum requirements:- 8 characters minimum
- At least one uppercase letter
- At least one number
- At least one special character
- 12+ characters
- Use a password manager
- Unique password (not reused)
- Enable 2FA for added security
Password Reset
Request Reset
OAuth Authentication
Google Sign-In
Benefits:
- No password to remember
- Automatic security from Google
- Faster login
- Google 2FA supported
Microsoft Sign-In
Enterprise benefits:
- Integrates with Azure AD
- Respects conditional access policies
- Supports multi-factor authentication
- Centralized account management
Two-Factor Authentication (2FA)
Add an extra layer of security:Enabling 2FA
Choose Method
- Authenticator App
- SMS
Recommended
- Install authenticator app (Google Authenticator, Authy, 1Password)
- Scan QR code
- Enter 6-digit code
- Save backup codes
Using 2FA
Login flow with 2FA:- Enter email and password
- Prompted for 6-digit code
- Open authenticator app
- Enter current code
- Logged in
- Optionally mark device as trusted
- Skip 2FA for 30 days on that device
- Can revoke trust anytime
SAML 2.0 SSO (Enterprise)
Enterprise single sign-on integration:Supported Identity Providers
- Okta
- Azure AD
- Google Workspace
- OneLogin
- Auth0
- JumpCloud
- Custom SAML 2.0 providers
SAML Setup
Contact Sales
SAML SSO requires Enterprise planEmail: sales@statusstack.com
Provide Metadata
Share SAML metadata XML with StatusStack:
- IdP Entity ID
- SSO URL
- Signing Certificate
Configure StatusStack
StatusStack team configures:
- SAML endpoint
- Attribute mapping
- Domain verification
- JIT provisioning (optional)
Just-in-Time (JIT) Provisioning
Auto-create accounts on first login:- No manual user creation
- Automatic onboarding
- Consistent with IdP
Session Management
Session Duration
Default session length:- Web: 7 days (with activity)
- Mobile: 30 days
- API tokens: No expiration (revocable)
- Enterprise: Configure custom session duration
- Security → Session Settings
Active Sessions
View and manage sessions: Dashboard → Settings → Security → Active SessionsSecurity Best Practices
Use Strong Passwords
Use Strong Passwords
Requirements:
- 12+ characters
- Mix of uppercase, lowercase, numbers, symbols
- Unique (not reused elsewhere)
- Use a password manager
Enable 2FA
Enable 2FA
Mandatory for:
- Organization owners
- Admins
- Users with access to production Stacks
Use SSO (Enterprise)
Use SSO (Enterprise)
Benefits:
- Centralized authentication
- Automatic deprovisioning
- Enforced security policies
- Audit logging
Review Active Sessions
Review Active Sessions
Monthly:
- Review active sessions
- Revoke unknown devices
- Check login locations
- Verify login times
Monitor Login Activity
Monitor Login Activity
Authentication logs track:
- Successful logins
- Failed attempts
- Password changes
- 2FA events
- OAuth connections
Troubleshooting
Can’t Login
Issue: “Invalid credentials” error Check:- Email address is correct
- Password is correct (case-sensitive)
- Account is verified (check email)
- Account is not locked
- Reset password
- Check spam folder for verification email
- Contact support if account locked
2FA Code Not Working
Issue: “Invalid code” error Check:- Clock on device is synchronized
- Entering current code (refreshes every 30s)
- Using correct authenticator app
- Use backup code
- Disable and re-enable 2FA
- Contact support for 2FA reset
OAuth Login Failing
Issue: “Error connecting to [Google/Microsoft]” Check:- Pop-ups are allowed
- Third-party cookies enabled
- Not using private/incognito mode
- Allow pop-ups for statusstack.com
- Try different browser
- Use email/password instead
SAML Not Working
Issue: “SAML authentication failed” Check:- SAML is configured for your domain
- IdP metadata is current
- Certificates not expired
- Contact your IT administrator
- Email support@statusstack.com with:
- Organization name
- Email address
- Screenshot of error
Next Steps
Security Settings
Configure security settings
Team Management
Invite team members
Subscription Plans
Compare plans

