Two-factor
Any member can enable TOTP two-factor from their profile. Admins can require it workspace-wide under Settings → Security, which gives existing members seven days to enrol before access is held.
SSO
SAML 2.0 and OIDC are available on Business. Once SSO is enforced, password login is disabled for your domain and provisioning follows your identity provider — deactivating someone there removes their Taskzin access on their next request.
Sessions and devices
- Members can see and revoke their own sessions from their profile.
- Admins can revoke any session in the workspace immediately.
- Session length is configurable, from eight hours to thirty days.
Data at rest and in transit
Traffic is TLS 1.2 or better. Data at rest is encrypted, backups are taken continuously with point-in-time recovery, and access by our own staff is logged and requires a documented reason.
Did this answer your question?
If not, write to support and quote this page. Median first reply is under two hours on weekdays.