Access Control
Access Control is on by default. While it is on, non-admin users (Basic and Read-only members) without access scopes can see all logs. Turn it off to prevent those users from seeing any logs until they hold a role that grants access scopes. You can also control what logs members see by using Role-Based Access Control.Discoverability
Discoverability lets you control how users can find and join your organization.- Discover - Members on the same domain can find and ask to join the organization. Discover is enabled by default.
- Join - Members on the same domain can join the organization without a request.
Sign-in Policy
Sign-in policy determines which authentication methods members are allowed to use when signing into your Organization. These options are turned off by default. You can use:- SAML Sign-in - Let members sign in using an identity provider such as Okta or OneLogin. Available for enterprise customers only. Learn how to set up SAML SSO.
- Idle Logout - Log members out after a period of inactivity. Available for all plans.
- Redirect after logout - Redirect members to an address after they logout. Available for all plans.
Two-Factor Authentication
You can set two-factor authentication for your own profile through the User Preferences menu.We support two-factor authentication only for Mezmo logins. For Google, GitHub, or Heroku, please set up two-factor authentication via their platform.
- Log in to the Mezmo web app.
- Go to Profile > User Preferences.
- Click Two-factor auth.
- Click Enable.
Password Guidelines
Your account password must contain:- Eight or more characters
- One lowercase character
- One uppercase character
- One number
- Your first name
- Your last name
- Your username

