#7698·infisical

Option Trust OIDC emails is not persistent

Author: madiaz-gifCreated Aug 18, 2026Updated Sep 9, 2026
Labelsproduct:platformdeployment:self-hosted

Product

Platform/Access controls/Other

Describe the bug

Hi

After configuring Keycloak OIDC, and added an email domain validation (without the TXT register of DNS)

Image

when an user X is trying to log in for the first time, an email is sent to user to validate with a code. To avoid this email, "Trust OIDC emails" was enabled and saved, but when the webpage is reloaded the "Trust OIDC emails" is back to false.

No error is showed in logs

The OIDC auth was ok, because the user X is listed in the Admin organization (with first name, family name and email)

To Reproduce

  1. Set "Trust OIDC emails" -> true
  2. Reload webpage
  3. Validate "Trust OIDC emails" -> true
  4. Log in with OIDC and no email code is required.

Expected behavior

"Trust OIDC emails" is persistent after reloading webpage

Screenshots

No response

Deployment Type

Self-hosted

Additional context

heml chart: infisical-standalone-1.10.0