Specset
← Back to changelog

More ways to sign in securely

Your team can now use Google Workspace or Okta alongside Microsoft Entra ID to sign in to Specset. Google Workspace setup is coordinated with Specset support. If you already have an account, the Google connection flow verifies your existing sign-in and asks you to confirm the link, keeping your projects and memberships together.

Passkeys let you sign in with your fingerprint, face, or device PIN when your organization allows them. Account Settings now separates Profile from Sign-in & security, where you can manage passkeys, your password, email verification, and recovery options. New password checks reject common or easily guessed choices, and sensitive changes ask you to verify your identity when needed.

In Org Settings → Security & SSO, administrators can make SSO optional or required, choose allowed sign-in methods, and require MFA or phishing-resistant MFA. Authentication, onboarding, and session-duration changes stay in a draft until you click Save. Specset checks that you can meet the proposed policy before applying it. Each organization's sign-in requirements still apply when you switch between teams.

See Single sign-on, Account security, and Organization security for setup and recovery instructions. Authenticator-app setup is not yet available; passkeys and qualifying SSO are the available routes for stronger authentication.