Skip to content
Log in
Account & Settings

Security & SSO

Gatsby is SOC 2 Type II certified with enterprise SSO through Okta, Google SSO, magic link login, and enforceable two-factor authentication across your organization.

SOC 2 Type II Certified

Independently audited, annually renewed.

Send the report to your security team instead of answering 50 questions yourself.

Okta SSO

Centralized access through your identity provider.

Provision and deprovision users from Okta. No separate account management.

Enforceable 2FA

Require two-factor across your organization.

Or let individual team members enable it for their own accounts.

An independent auditor evaluates Gatsby’s security controls annually. Not a self-assessment. Not a point-in-time snapshot. A sustained review that covers five trust principles: security, availability, processing integrity, confidentiality, and privacy.

For most enterprise procurement workflows, SOC 2 Type II is the baseline. Without it, you’re often not in the conversation.

What the Certification Covers

Security

Data protected against unauthorized access through encryption and access controls.


Availability

Redundant infrastructure and disaster recovery for reliable uptime.


Processing Integrity

Guest data, RSVPs, and event information processed accurately.


Confidentiality

Guest lists and private event details protected from unauthorized disclosure.


Privacy

Personal information handled in compliance with privacy laws and policies.

Requesting the Report

Contact Gatsby directly through Slack or email. We provide the report for your security review or compliance documentation under NDA.

Gatsby supports Okta for enterprise SSO, Google for teams in Google Workspace, magic links for passwordless login, and standard username/password with optional 2FA.

Centralize Gatsby access through your Okta tenant. Users sign in once. Offboarding happens automatically when you remove someone from Okta.

What's Supported

  • SP-initiated SSO: Start from the Gatsby login page, authenticate through Okta
  • IdP-initiated SSO: Start from your Okta app dashboard, land directly in Gatsby
  • Automatic provisioning: Users added in Okta gain Gatsby access
  • Automatic deprovisioning: Users removed in Okta lose Gatsby access

Requirements

Before you begin, confirm you have:

  • Access to an Okta tenant
  • Okta administrator privileges
  • Admin access to your Gatsby organization

Setup Steps

  1. In Okta, navigate to Applications and click Browse App Catalog.

  2. Search for “Gatsby” and click Add Integration.

  3. Complete General Settings for your organization.

  4. In Gatsby, open Team Settings and find the Okta Configuration section.

  5. From Okta’s Sign On tab, copy the Client ID and Client Secret into the corresponding Gatsby fields.

  6. For the Issuer URL, click the dropdown in Okta’s top right corner and copy the Authorization Server URL.

  7. Click Save to complete configuration.

How Users Sign In

Once configured, users can sign in three ways:


From Okta

Click the Gatsby app tile in your Okta dashboard.


From Gatsby Login Page

Click “Login with Okta” on the standard Gatsby login page.


Direct Okta Login

Navigate directly to gatsby.events/oktaLogin for Okta-only authentication.

Gatsby application in the Okta app catalog

For teams without enterprise SSO requirements, Gatsby offers Google SSO and passwordless magic link login.

Google SSO

  • Click Login with Gmail on the Gatsby login page
  • Select your Google account
  • Optionally grant email sending permissions during login
  • Your Google account handles authentication security

Magic Link

  • Click Login with Magic Link on the login page
  • Enter your email address
  • Check your inbox for a secure login link
  • Click to sign in without a password

Standard Login

Username and password authentication at gatsby.events/login.

Can be combined with two-factor authentication for additional security.

Add a second verification step to username/password logins. You can enable 2FA for yourself or require it across your organization.

Set Up 2FA for Your Account

  1. Click your initials in the top right corner.

  2. Select Settings.

  3. Click Configure 2FA.

  4. Scan the QR code with your authenticator app (Google Authenticator, Authy, 1Password, or similar).

  5. Enter the code from your authenticator to verify setup.

Require 2FA for Your Organization

Admins can enforce 2FA for all team members.

  1. Navigate to Team Settings.

  2. Toggle Require Two Factor Authentication to on.

  3. All team members will be prompted to set up 2FA on their next login.

When 2FA Doesn't Apply

Gatsby’s 2FA covers username/password logins only.

  • Google logins use Google’s own security (including their 2FA if enabled)
  • Okta logins use Okta’s security policies
  • Magic link logins verify identity through email access

Is Okta your only enterprise SSO option?

Currently, yes. Google SSO is available for teams using Google Workspace. If you have specific SSO requirements, contact us to discuss options.

Does Okta SSO cost extra?

Yes. The Okta integration carries an additional cost. Contact us for pricing details.

Can I require everyone on my team to use Okta?

Once Okta is configured, users can sign in through Okta. Contact us about enforcing Okta-only authentication for your organization.

What happens if I lose access to my authenticator?

Contact Gatsby support. We can help you regain access and reset your 2FA configuration.

Do you have a security questionnaire we can use?

Contact us directly. We provide our SOC 2 report and answer specific questions for your security review process.

Gatsby Events logo The event workspace for relationship-driven teams.
SOC 2 · Type II

Get Support

For customers

Search this site first. Most answers are right here.


Still stuck? Email us at:

Email copied to clipboard

Office Hours

Every Tuesday at 2pm EST. Drop in with questions. No agenda.

Join Office Hours

For guests

Having trouble with your invitation or registration? Email us and include the event name. We'll sort it out.

Email copied to clipboard

Who answers

Support is handled by the same team that builds Gatsby. Not a help desk. Not a queue. Real people who know the product.