SOURCE: Vacation Tracker TITLE: Does Vacation Tracker offer SSO (Single Sign-On)? URL: https://vacationtracker.io/knowledge-base/does-vacation-tracker-offer-sso-single-sign-on/ LANG: en PUBLISHED: 2023-10-31 UPDATED: 2025-05-27 READING: 1 min # Does Vacation Tracker offer SSO (Single Sign-On)? # Does Vacation Tracker offer SSO (Single Sign-On)? Yes — and for most teams, it's already on. If your account uses the Slack, Microsoft Teams, or Google Workspace integration, you're signing in via SSO automatically: Vacation Tracker hands you off to your identity provider for authentication and trusts whatever they say. No separate VT password to manage. A new hire's IT admin adds them to the company Slack workspace. The next time they open Vacation Tracker, they click "Sign in with Slack", get bounced to the Slack OAuth screen, approve, and they're in — no separate Vacation Tracker password to set, store, or rotate. ## Which Integrations Use SSO? Three of Vacation Tracker's four sign-in paths are SSO-backed by default. The fourth (Email Only) uses VT's own login with optional MFA on top. #### Slack SSO Click Sign in with Slack on the login screen. You're routed to Slack's OAuth flow, which authenticates you against your workspace and returns you to Vacation Tracker. #### Microsoft Teams SSO Click Sign in with Microsoft and you're sent to the Office 365 / Microsoft Entra login first to enter your Microsoft credentials, then bounced back into Vacation Tracker. #### Google Workspace SSO Click Sign in with Google to use your Google Workspace account. Google handles the authentication and Vacation Tracker accepts the result. #### Email Only No SSO For teams that don't use Slack, Teams, or Google Workspace, VT supports email + password sign-in with its own MFA option layered on top. See Does Vacation Tracker have MFA? (https://vacationtracker.io/knowledge-base/does-vacation-tracker-have-mfa-multi-factor-authentication/) ## What That Means in Practice - No separate VT password for Slack / Teams / Google users — your identity provider is the single source of truth, so password rotations, complexity rules, and recovery all happen there. - Off-boarding is mostly automatic — when IT removes someone from your Slack workspace, Microsoft tenant, or Google Workspace, they lose access to Vacation Tracker on the next directory sync, and the User account moves to the Deleted tab on the Users page. If the sync hasn't run yet, an Admin can force it by clicking Sync Existing Users at the bottom-right of the Users page — that pulls the latest directory state and moves the removed person to Deleted right away. You don't need to deactivate them manually; deletion happens automatically once the sync runs. - Provider-side controls apply — if your org enforces MFA, conditional access, IP allowlists, or device compliance at the Slack / Microsoft / Google level, those rules cover Vacation Tracker too. There's nothing extra to configure inside VT. ## Multi-Factor Authentication (MFA) for SSO Users For Slack, Microsoft Teams, and Google Workspace integrations, MFA is configured in the identity provider's settings, not inside Vacation Tracker. Whatever MFA policy the provider enforces — TOTP app, SMS code, security key, push notification — runs at the provider login step before VT sees you. Set it up here: #### Slack two-factor authentication slack.com/help/articles/204509068 (https://slack.com/help/articles/204509068-Set-up-two-factor-authentication) #### Microsoft two-step verification support.microsoft.com (https://support.microsoft.com/en-us/account-billing/turning-two-step-verification-on-or-off-for-your-microsoft-account-b1a56fc2-caf3-a5a1-f7e3-4309e99987ca) #### Google 2-Step Verification support.google.com/accounts/answer/185839 (https://support.google.com/accounts/answer/185839) Email-only teams If your Vacation Tracker account uses the Email Only integration, MFA is handled by Vacation Tracker itself — turn it on in your User profile. See How Do I Turn On/Off MFA in Vacation Tracker? (https://vacationtracker.io/knowledge-base/how-do-i-turn-onoff-mfa-multi-factor-authentication-in-vacation-tracker/) ## Common Questions Do I need to do anything to enable SSO? No. If your Vacation Tracker workspace is set up under a Slack, Microsoft Teams, or Google Workspace integration, every User automatically signs in through SSO. There's no toggle to flip — it's the only way they can sign in for that integration path. Does Vacation Tracker support SAML or custom SSO providers (Okta, OneLogin, JumpCloud)? The four supported sign-in paths are Slack, Microsoft Teams (via Microsoft / Office 365), Google Workspace, and Email Only. SAML / OIDC integrations with third-party identity providers like Okta, OneLogin, or JumpCloud aren't currently part of the standard sign-in options. If your IdP federates into Microsoft Entra or Google Workspace, you can usually still benefit from those rules at the IdP layer when Users sign in through the Microsoft or Google option. For dedicated SAML integration questions, contact Support. If we change our identity provider, do we have to re-add Users in Vacation Tracker? Switching integrations (e.g. Slack → Microsoft Teams) is a migration, not just a sign-in change. Vacation Tracker has a dedicated migration flow that moves your data to the new integration. See How Do I Migrate My Account? (https://vacationtracker.io/knowledge-base/how-do-i-migrate-my-account-move-to-a-different-integration/) If you stay on the same integration but change identity provider settings inside it (e.g. switch Microsoft tenant), Users keep working as long as their email addresses match. ### What's Next? Does Vacation Tracker have MFA (multi-factor authentication)? (https://vacationtracker.io/knowledge-base/does-vacation-tracker-have-mfa-multi-factor-authentication/) How Do I Turn On/Off MFA in Vacation Tracker? (https://vacationtracker.io/knowledge-base/how-do-i-turn-onoff-mfa-multi-factor-authentication-in-vacation-tracker/) How Do I Migrate My Account? (Move to a Different Integration) (https://vacationtracker.io/knowledge-base/how-do-i-migrate-my-account-move-to-a-different-integration/) Need help? Contact our Support team via email (mailto:hello@vacationtracker.io) or chat (#), Monday to Friday, 9 AM – 5 PM EST.