Sign in and create an account

Sign in with GitHub, Google or an email address and password, create an account, and return to the product that sent you to Beyond Accounts.

  • Availability: Experimental
  • Evidence: Recorded run
  • How-to guide

Before you start

You need one of these: a GitHub account, a Google account, or an email address you can read.

The sign-in screen offers only the methods its installation can actually perform. If a method is missing from the screen, it is not configured there, and nothing on this page makes it appear.

Sign in

  1. Open Beyond Accounts, or open a Beyond product: a product sends you to the same screen. Its title is Sign in, with the line "One account for Workspace, CDN and Delegate."
  2. If the text is in the wrong language, change Language at the bottom of the screen first. It works before you sign in.
  3. Choose one method:
    • Continue with GitHub or Continue with Google. You leave for the provider, approve there, and come back signed in.
    • Or fill in Email address and Password, then choose Sign in with email.
  4. While it works, the screen shows "Signing you in…".

Expected outcome: you land on Overview, or on the product that sent you. See returning to a product.

If the address and password are not accepted, the screen answers the same way for an address that has no account and for a wrong password, on purpose: it never reveals who has an account. Your password is cleared from the field after every attempt.

Create an account

With GitHub or Google, there is no separate step: the first time you choose Continue with GitHub or Continue with Google, your account is created.

With email:

  1. On the Sign in screen, fill in Email address and the Password you want.
  2. Choose Create an account with email.
  3. One of two things happens, depending on how the installation is configured:
    • You are signed in at once and land on Overview.
    • The screen shows "Check {email} and open the link to finish creating your account.", with your address in place of {email}. The account exists and is waiting. Continue with Confirm your email.

Field checks you may see: "Enter a valid email address." and "This is required."

Returning to the product you came from

When a product sends you to sign in, the screen adds a line under the title: "You will be returned to {product}.", where {product} is the identifier of the product, for example delegate. After you sign in, Accounts sends you back to that product and you arrive signed in. You do not type your password again in the product.

From Overview, the panel Go to lists the products of the installation, each with a button "Open {product}" that carries the name the installation gave that product. Its text is "You are already signed in. These open without signing in again."

A product can also send you to a screen of Accounts itself, for example to manage an organization, and ask for you back. If you are signed out, you sign in first and arrive at that same screen. While you are there, Accounts shows a link "Return to {product}", with the name the installation gave the product, in a small region labelled "Where you came from" under the header, and again next to the confirmation after you complete a change. The link appears only when the Accounts service validated the address the product asked for. Nothing is carried back with you: the product reads what changed by itself.

The move between products with one login was driven in a browser on a local installation, in all six directions between Workspace, CDN and Delegate, with the password typed once. Sessions and single sign-on explains what travels between the products and what does not.

When a return destination is refused

Accounts only returns you to an address that the product registered in advance, compared exactly. This protects you: a link that asked Accounts to send a freshly signed-in person somewhere else would be an attack.

  • If the address in the link is not one the product registered, the Accounts service refuses it before anything else happens. You are not sent there. What you see is a short error response from the service with the code DESTINATION_REJECTED, not a screen of the interface.
  • If you reach the sign-in screen with a return address it does not recognize, the screen ignores it. You sign in normally and land on Overview.
  • If a product sent you to an Accounts screen with a way back that the service does not accept, no "Return to {product}" link appears, and no message either. The address is never shown and never followed. You simply stay at Accounts, and go back to the product by yourself, for example from Go to on Overview.

In every case your account is fine. Go back to the product and start again from its own sign in control. If it keeps happening from the product's own link, the product's address is not registered at Accounts, which only the people who run the installation can correct.

If it does not work

You see Meaning What to do
"Your session expired. Sign in to continue." right after you chose Sign in with email The address and password were not accepted. See the warning above Check the address, or recover access
"Those details did not sign you in." The provider you left for (GitHub or Google) returned a refusal Start again; approve the request at the provider
"No sign-in method is configured here yet." The installation has no identity provider Nobody can sign in until the people who run it configure one
"The identity provider is not answering. Nobody can sign in until it does." The provider is configured and cannot be reached Wait and try again. Nothing is wrong with your account
"Accounts is not answering right now. Nothing was changed." with Try again The Accounts service cannot be reached Choose Try again later. The interface deliberately shows no sign-in form in this state
"This account cannot sign in. Contact whoever administers it." The account is suspended Signing in again changes nothing. See suspension

The complete list is in Accounts troubleshooting.

Limits

Next action

Signed in for the first time? Create or join an organization, or open your product from Go to on Overview.

Related: Confirm your email · Recover access · Sessions and single sign-on