Logging in and recovering account access

Sign in at business.didit.me with SSO, a passkey, or email and password. Here's what to do about forgotten passwords, lockouts, and the classic missing-organization problem.

Short answer

If you signed in successfully but your team's workflows and history aren't there, you almost certainly created a new organization instead of joining theirs. Ask an owner to invite your email - the data isn't lost, you're just in the wrong organization.

You sign in to Didit at business.didit.me with Google SSO, a passkey, or an email and password. Most access problems come down to being in the wrong organization or a locked password, not lost data.

#Signed in, but your organization's data is missing

This is by far the most common access problem, and it isn't a bug.

The security settings page in the Didit console with the two-factor authentication requirement
  1. Turn this on to require 2FA for everyone in the organization.
  2. View members shows who already has it enabled, which is who can still get in.
Organization-wide sign-in rules live under Settings, Security.

If you create an account without using a teammate's invite link, Didit creates a brand-new organization for you rather than adding you to your team's existing one. Your colleague's workflows, API keys, and verification history live in their organization, and you're looking at yours.

To fix it:

  1. Ask to be invited

    Have an owner or admin of the correct organization invite your email under Settings > Team. See inviting team members and setting roles.

  2. Clean up the duplicate

    An email can only belong to one organization at a time, so the empty organization you accidentally created may need to be removed before the invite can land. Its owner can delete it from organization settings - or contact support and they'll handle it.

If instead a page won't load, shows a server error, or history looks genuinely missing after you're confirmed in the right organization, that's not something you did. Contact support rather than trying to work around it.

#Forgot your password

Use the reset link on the login page and follow the instructions sent to your email. If you signed up with SSO, reset your password with your identity provider instead - there's no separate Didit password to recover.

#Too many failed attempts

Entering the wrong password several times in a row temporarily locks the account as a security measure. Wait before trying again, or use the reset link to set a new password rather than continuing to guess - each guess extends the lockout.

#Changing your login email

To move your account to a new email address, add the new email as a team member with the same role under Settings > Team, then remove the old one. If you're locked out and can't do this yourself, contact support.

#Switching from a social login to email and password

If you signed up with Google or GitHub and want to move to an email and password, the practical route is the same as changing your email: have the target address invited as a member with your role, then remove the old identity. Ask support if you need it done while you're locked out.

#Passkeys and second factors

If you're stuck behind an extra sign-in step - a passkey that no longer works, a lost second factor, a new phone - contact support so they can verify who you are and restore access. Don't keep retrying; repeated failures extend the lockout.

Some actions are deliberately gated behind an extra confirmation even after you're signed in. That's intentional for sensitive changes, not a fault.

#Organizations using SSO

If your organization has SSO configured, sign in through your identity provider rather than a password. If password sign-in is unexpectedly blocked, that's usually an SSO policy your own admin controls - check with them before contacting support.

#Getting help when you can't sign in

Support will ask for something that identifies your organization. If you can't reach the console at all, send the email address you sign in with and, if you know it, your organization ID from a previous URL. Asking someone to send a console screenshot when the problem is that they can't reach the console isn't useful - say plainly that you're locked out and they'll take it from there.