Logto
In progress
📫
Email template i18n
15
🔰
reCAPTCHA support
12
🪄
Magic link
1
Planned
✍️
Profile fulfillment
Collect mandatory and optional profile fields during user registration.
30
🎨
Account center elements
A set of framework-agnostic web components that can interact with Account API.
23
🔐
Passkey as a first authentication factor
Then no password is required for sign-in.
21
🚫
Block disposable email address registration
16
✨
Multiple custom domains
Support multiple custom domains and render different sign-in experience brandings according to the domain.
14
🛡️
Adaptive MFA
Trigger MFA according to the current risk level, e.g. a new device.
12
🔢
Authentication policy
Customize policies to control authentication, such as username rules, IP blacklist / whitelist, verification code expiration, etc.
10
🎩
Dev to production tenant duplication
Duplicate dev tenant configurations (connectors, roles, resources, etc.) to a new production tenant.
9
🧓
Friendly "continue" prompt
Simplify wording when no matching account is found during sign-in experience.
2
🔏
Unverified SSO email verification
Allow verification code flow for SSO-provided unverified emails.
1
☁️
Allow concurrent Google Workspace and social login
Option to allow both Google Workspace and Google social logins for the same account.
1
✉️
Registration from forgot password
Directly register via forgot password instead of prompting for another round of verification.
1
♻️
Verification rate limit reset
Allow to reset sign-in verification lockouts.
0
Backlog
🔌
API authentication
Authenticate users via API. No redirect needed.
19
🖨️
Support device flow
Support RFC 8628: OAuth 2.0 Device Authorization Grant.
11
🛰️
Sign-in experience elements
A set of framework-agnostic web components that can interact with Experience API.
10
📄
RBAC as code
Allow to use code-based configuration to provision role-based access control, for example, a YAML file.
8
🚀
Logto Management API key
6
🌺
Organization portal
An out-of-the-box solution that allows org admins to manage identities, organization profiles, and set up enterprise SSO themselves.
5
⛵
Attribute-based access control (ABAC)
3
🚀
SCIM API
System for cross-domain identity management APIs.
2
🖲️
Support CIBA flow
Support Client Initiated Backchannel Authentication (CIBA) Flow.
1
🧟♀️
Restrict user sign-ins to a specific app within a multi-app product
Block users at the login stage if they come from a specific app. This will essentially enable app-level authentication (beyond just branding).
0
🫧
RFC 9396: OAuth 2.0 Rich Authorization Requests
Implement RFC 9396 and provide some useful feature around it.
0
Powered by Productlane
Powered by Productlane
Terms of Service
Privacy