Single sign-on and the audit log

The workspace audit log: who added the SSO provider, who invited a member, who created an API key, and when

Two things larger teams ask for before they will move properly.

Single sign-on

Add your own OIDC or SAML provider under Settings, SSO, then verify your domain with a DNS record. After that your team signs in the way they sign in to everything else.

Audit log

Settings, Audit log records the changes worth being able to look up later: members added and removed, invitations sent and cancelled, workspace settings, the billing email, and API keys being created or revoked.

Every entry names who did it and when.