Security, SSO and two-factor

How accounts are protected, what SSO covers, and the session controls admins have.

4 min read

Two-factor

Any member can enable TOTP two-factor from their profile. Admins can require it workspace-wide under Settings → Security, which gives existing members seven days to enrol before access is held.

SSO

SAML 2.0 and OIDC are available on Business. Once SSO is enforced, password login is disabled for your domain and provisioning follows your identity provider — deactivating someone there removes their Taskzin access on their next request.

Sessions and devices

  • Members can see and revoke their own sessions from their profile.
  • Admins can revoke any session in the workspace immediately.
  • Session length is configurable, from eight hours to thirty days.

Data at rest and in transit

Traffic is TLS 1.2 or better. Data at rest is encrypted, backups are taken continuously with point-in-time recovery, and access by our own staff is logged and requires a documented reason.

Did this answer your question?

If not, write to support and quote this page. Median first reply is under two hours on weekdays.

Your team already has the work. Give it a home.

Set up a workspace in under two minutes. Import from ClickUp, Jira, Asana or Trello in one click.

No credit card • Free 14 days • Cancel anytime