Logto blog

Discover Logto and explore plenty of resources on authentication, authorization, identity management, open standards (OAuth, OpenID Connect, SAML), and more.

All posts

  • Cover
    What is refresh token rotation and why is it important?
  • Cover
    Logto plan update: Optimizing token quotas to protect Logto from abuse and ensure reliability
  • Cover
    Understanding access tokens, refresh tokens, and ID tokens in OpenID Connect (OIDC) protocol
  • Cover
    2024 Auth0's latest pricing explained and the best Auth0 alternatives
  • Cover
    What is an authenticator app
  • Cover
    OTP bots: What they are and how to prevent attacks
  • Cover
    Real use cases: Expanding your auth system with webhooks
  • Cover
    Why you might see a 404 when signing in to your Logto-integrated app
  • Cover
    Enterprise SSO: What it is, how it works, and why it matters
  • Cover
    Set up authentication and maximize Google login conversions with 6 configurations
  • Cover
    5 go-to-market lessons I learned from driving a developer-led growth product
  • Cover
    Logto add-on pricing: A simple explanation
  • Cover
    Color palette in branding: How Logto generate a custom color scheme for your brand
  • Cover
    Is magic link sign-in dying? A closer look at its declining popularity
  • Cover
    Personal Access Tokens, Machine-to-Machine authentication, and API Keys definition and their real-world scenarios
  • Cover
    Update on Logto Cloud pricing: Add-ons start charging
  • Cover
    The fastest way to build an authentication system
  • Cover
    Understand Just-in-Time provisioning
  • Cover
    Exploring the full potential of the Logto Management API
  • Cover
    Designing and implementing our company's marketing site: My journey from content to implementation