Login - Enable Windows Azure Active Directory Single Sign On
Ability to use Azure Active Directory for MFA.
Purpose: It makes Microsoft users easily log into Xero.

Hi community, we appreciate many businesses have adopted single sign on with providers like Google, Microsoft Azure/Entra, and Okta to easily streamline logins to many applications and manage operational risk. Our team are staying close to votes and feedback of the idea here, and though we can't commit to development at this time, we will be sure to let you know of any progress toward enabling single sign on
-
Andrew Anderson commented
Please add Okta to the list of IdPs that should be supported when SAML SSO is added to Xero.
-
Matt Gifford commented
I think we need a commitment that it's in development at least, it's been 12+ years since this was initially suggested.
It's somewhat embarrassing for Xero at this point..
-
Guy Edelstyn commented
Seriously, how is it 2025 and no SSO?! @Xero team please update!
-
Stuart Ellidge commented
It's more than a year since the last post - can you give us an update?
-
Eric Hoy commented
Looking at these docs... I'm surprised the ATO isn't enforcing you to get this type of Identity integration completed. It's mentioned in Essential8, CPS234, and other ASIC/APRA regulatory guidelines.
https://apiportal.ato.gov.au/api-products/oauth-dynamic-client-registration-api
https://www.ato.gov.au/api/public/content/d9bc7a79-1954-405f-b107-9154900768eb_ato_digital_strategy_2022_25_pdf -
Tasha Palmer commented
This definitely needs to be made a priority. Our financials and payroll are the least secure.
-
Matthew Flanagan commented
Stop putting prices up each year without implementing SSO. We need this to be secure. We don't need or want features like JAX.
-
Rupert Davey commented
100% yes to this. Why is this not a thing... it's 2025!!!!
-
Michael Romano commented
As a shareholder, I'm watching this closely. Not sure what the CISO is doing.
-
James Bonifield commented
I am looking at moving off Xero, as it is ridiculous that SSO support is not provided, and as a provider of Identity & Access Management services it's sort of a deal breaker to use software that doesn't provide this fundamental security benefit.
By the way - as an enterprise software provider - you should be mindful of CISA's Secure By Design Framework and the myriad other frameworks that you are not in compliance with by not providing SSO (even behind a paywall, which is a separate conversation, but at least it's offered)
If you need help implementing shoot me an email - james@anthropicidentity.com I work in IAM and have implemented SSO many times. How easy it is to do this vs the impact it has on the maturity of your software makes me a little shocked you still don't have it in place
-
Joseph Kelly commented
Will begin to look at alternative systems which allows SSO. Please review your commitment to this
-
Joseph Kelly commented
Mind blowing that this isn’t a standard feature!
-
Darren Gore commented
The sooner this can come in the better Xero.
-
Reinart Stander commented
I wonder how many complaints about the product would make Xero take this seriously. It is not a big implementation task. The responses from Xero shows no real interesting in developing such a critical component.
-
Nicholas Piasecki commented
What’s really inexcusable is you could implement Entra SSO, which is the 80% scenario, in a week. Make me provision a Xero password no one knows, fine, just let me map it to an Entra SSO flow
-
Joe Selway commented
There is a wall of shame for companies that gatekeep this absolutely essential feature behind higher pricing tiers. To not offer the feature at all in 2025 is utterly tone deaf… https://sso.tax
-
Josh De Raadt commented
Implementing Zero Trust for my clients, Xero is the only SaaS in most which doesn't have SSO - and it is business critical for security! No update from Xero about plans on this in almost a year - surely there's some progress towards such a critical feature. People need to share this 12 YEAR OLD FEATURE REQUEST to try and get more traction - 12 years is long enough to solve a problem which only becomes more critical as threats evolve.
Xero is currently not compatible with Essential Eight ML2.
-
Alex Steer commented
In positive news, Hubspot just announced that they've added SSO support using SAML2.0 to their non enterprise tiers so that organisations can maintain good security regardless of size.
Nice to know it's not every SaaS provider that just complete ignores hundreds upon hundreds of requests from their customers for standard security functionality necessary for SaaS applications. It's just Xero.
-
Aaron Causeway commented
our ISO auditors are advising to shift away from Xero due to the lack of security features (SSO DKIM) e.t.c sad to see from such a big name but guess im planning to leave them now
-
Daniel Butt commented
This is an absolutely essential feature for all cloud apps. It not only improves security, but also makes the customer experience so much better.