Skip to Content
HelpGetting StartedLogging In & Passwords

Logging In & Passwords

Accessing Your Account

Sign in at app.scopestack.io . If your organization uses SSO, you will be redirected to your identity provider instead of seeing the standard login form, provided you already have a ScopeStack account — see How users get accounts.

Don’t have an account yet? Book a demo  to learn more about the platform and get access to a trial.

How Users Are Added

Users are added to ScopeStack by an account administrator. There are three ways a user gets access:

  1. Invitation email: An admin creates the user in Settings > Users & Groups > Users and ScopeStack sends an invitation email. The user clicks the link to set their password and log in.
  2. SSO auto-provisioning: If your account uses SAML SSO, a user who does not have a ScopeStack account yet gets one automatically the first time they open ScopeStack from your identity provider — the app tile in your launcher, or the application’s user access URL. They receive the account’s default role. Someone without an account cannot start at app.scopestack.io ; see How users get accounts.
  3. API provisioning: Users can be created programmatically through the ScopeStack API.

User Types

Each user is assigned a type that determines their license tier and access level:

TypeDescription
LicensedA paid user with full edit access. Counts against your license limit.
SalesA paid user with limited ability to check project status and use the Sales app.
ServiceA free service account that can access the API but not the application UI.
View OnlyA free user with read-only access to projects they are added to as teammates.

User types are set when creating or editing a user in Settings > Users & Groups > Users.

Password Requirements

Passwords must have a minimum of 8 characters, including at least:

  • One uppercase letter
  • One lowercase letter
  • One number
  • One symbol (!,@,#,etc)

Password Expiration

Password rotation is configurable per account. Your administrator sets the rotation interval in Account Settings. The default is 90 days. When set to 0, password rotation is disabled entirely.

SSO users are exempt from password expiration. If a user authenticates through an identity provider, password age is never checked.

Changing Your Password

Go to User Profile (the menu under your name, top right) and open the Password tab to change your password. You will need to enter your current password and then your new password twice to confirm.

Account Lockout

After 5 incorrect password attempts, the account is locked. You are warned on the final attempt before it happens.

A locked account unlocks itself automatically after 30 minutes. If you need access sooner, an administrator at your organization with permission to manage users can unlock it from Settings → Users & Groups → Users. Contact ScopeStack Support only if neither is an option.

Session Timeout

Sessions expire after 4 hours of inactivity. After timeout, you will be redirected to the login page. If your organization uses SSO, re-authentication is typically seamless.

Resetting a Forgotten Password

Click Forgot your password? on the login page to receive a password reset email. The reset link is valid for 30 minutes. If it expires, request a new one from the same link.

SAML-based SSO

Your organization can use a SAML identity provider (Okta, Microsoft Entra ID, Google Workspace, etc.) instead of ScopeStack passwords. SSO users bypass password requirements and expiration entirely. See Single Sign-On (SSO) for setup details.

New to ScopeStack?

ScopeStack automates scoping, pricing, and SOW generation for IT services teams. See how it fits your process.

Book a demoBrowse the docs
Last updated on