Login - Enable Windows Azure Active Directory Single Sign On
Ability to use Azure Active Directory for MFA.
Purpose: It makes Microsoft users easily log into Xero.

Hi community, we appreciate many businesses have adopted single sign on with providers like Google, Microsoft Azure/Entra, and Okta to easily streamline logins to many applications and manage operational risk. Our team are staying close to votes and feedback of the idea here, and though we can't commit to development at this time, we will be sure to let you know of any progress toward enabling single sign on
-
Darren Gore commented
The sooner this can come in the better Xero.
-
Reinart Stander commented
I wonder how many complaints about the product would make Xero take this seriously. It is not a big implementation task. The responses from Xero shows no real interesting in developing such a critical component.
-
Nicholas Piasecki commented
What’s really inexcusable is you could implement Entra SSO, which is the 80% scenario, in a week. Make me provision a Xero password no one knows, fine, just let me map it to an Entra SSO flow
-
Joe Selway commented
There is a wall of shame for companies that gatekeep this absolutely essential feature behind higher pricing tiers. To not offer the feature at all in 2025 is utterly tone deaf… https://sso.tax
-
Josh De Raadt commented
Implementing Zero Trust for my clients, Xero is the only SaaS in most which doesn't have SSO - and it is business critical for security! No update from Xero about plans on this in almost a year - surely there's some progress towards such a critical feature. People need to share this 12 YEAR OLD FEATURE REQUEST to try and get more traction - 12 years is long enough to solve a problem which only becomes more critical as threats evolve.
Xero is currently not compatible with Essential Eight ML2.
-
Alex Steer commented
In positive news, Hubspot just announced that they've added SSO support using SAML2.0 to their non enterprise tiers so that organisations can maintain good security regardless of size.
Nice to know it's not every SaaS provider that just complete ignores hundreds upon hundreds of requests from their customers for standard security functionality necessary for SaaS applications. It's just Xero.
-
Aaron Causeway commented
our ISO auditors are advising to shift away from Xero due to the lack of security features (SSO DKIM) e.t.c sad to see from such a big name but guess im planning to leave them now
-
Daniel Butt commented
This is an absolutely essential feature for all cloud apps. It not only improves security, but also makes the customer experience so much better.
-
Nathan Bradtke commented
To be a leading product this feature should already be implemented.
-
Mark Anyon commented
I went to the NZ Cyber security Summit in Wellington a week ago. Crowdstrike gave a presentation where someone senior from Xero took part in the presentation. The audience was a few hundred cyber professionals. Xero person went to great lengths to point out how conscious Xero is about customer cyber security on the platform. Knowing SSO is still not available in Xero was a topic at lunch afterwards. Time to get serious on this Xero instead of talking a big game about Cyber Security. The reality is not in line with the marketing!
-
Markus H commented
SAML / SSO is pretty much expected in 2025. We're a cyber security provider and every other software package in the market, let alone a global one, supports this.
-
Geoff Boreland commented
Can we get a commitment as to when this will be made available?
-
Roger Barr commented
Agree with many of the comments below. This is a widely adopted and expected feature that many of us have to have in place to comply with various security accreditations. It would be great to have this in place ASAP.
-
Amy Jobson commented
We are moving everything to single Sign on and Xero being one of our critical apps, this will be important for how we move forward. Would be good to have an urgent update on your plans for this so people can manage things accordingly.
-
Jason Hensley commented
So in 2022 you identified that your customer base wants SSO, and in 2024 confirm no commitment or dev has been done for it. Major disappointment!! Your app is going the way of the dinosaur. Its time to catch up to the most BASIC app standards, or you will die off. Who is running this ship? They need a wake-up call!
-
James Munro commented
It's great to see this getting more attention from the community.
Hopefully the Xero Team takes notice.
-
Elliot Mackenzie commented
More to the point, the Australian government ACSC Essential8 now requires it.
-
Simon Pilot commented
We are implementing the Australian ESSENTIAL 8 security measures. Can we have single sign on so we can use phishing resistant MFA & log MFA failure? https://www.cyber.gov.au/resources-business-and-government/essential-cyber-security/essential-eight/essential-eight-maturity-model
-
Shiv Narayan commented
We are also likely needing to switch platforms this year as a result of this missing feature. This is disappointing as we have been a Xero customer since 2012.
-
Nigel Moore commented
Please add this Xero - it's crazy that this has been on the Ideas Board since 2013 and has a huge number of votes.
It's such an easy implementation for a dev team to roll out and dramatically improves the security of Xero and opens up the customer base to anyone under ISO27001 etc.