Enforced OIDC SSO still requires email code validation in the first login
Author: madiaz-gifCreated Sep 9, 2026Updated Sep 9, 2026
Labelsproduct:platformdeployment:self-hosted
Product
Platform/Access controls/Other
Describe the bug
Setting "Enforced OIDC SSO" = true, and then logging via OIDC, the user is still asked for the email code validation.
To Reproduce
- Click to enable "Enable OIDC"
- Click to enable "Enforced OIDC SSO" = true
- Click to enable "Enable Admin SSO Bypass"
- Login using OIDC with an OIDC user for the first giem, the email code is requested
Expected behavior
- Click to enable "Enable OIDC"
- Click to enable "Enforced OIDC SSO" = true
- Click to enable "Enable Admin SSO Bypass"
- Login using OIDC with an OIDC user for the first giem, the email code is not requested (according documentation)
Screenshots
No response
Deployment Type
Self-hosted
Additional context
Infisical helm chart -> infisical-standalone-1.10.0
Source: Infisical/infisical