#8052·infisical

Enforced OIDC SSO still requires email code validation in the first login

Author: madiaz-gifCreated Sep 9, 2026Updated Sep 9, 2026
Labelsproduct:platformdeployment:self-hosted

Product

Platform/Access controls/Other

Describe the bug

Setting "Enforced OIDC SSO" = true, and then logging via OIDC, the user is still asked for the email code validation.

To Reproduce

  1. Click to enable "Enable OIDC"
  2. Click to enable "Enforced OIDC SSO" = true
  3. Click to enable "Enable Admin SSO Bypass"
  4. Login using OIDC with an OIDC user for the first giem, the email code is requested

Expected behavior

  1. Click to enable "Enable OIDC"
  2. Click to enable "Enforced OIDC SSO" = true
  3. Click to enable "Enable Admin SSO Bypass"
  4. Login using OIDC with an OIDC user for the first giem, the email code is not requested (according documentation)

Screenshots

No response

Deployment Type

Self-hosted

Additional context

Infisical helm chart -> infisical-standalone-1.10.0