Need Help? We are right here!
Thanks for your Enquiry. Our team will soon reach out to you.
If you don't hear from us within 24 hours, please feel free to send a follow-up email to info@xecurify.com
Search Results:
×This section list all different IDP Product/ Global Settings and configurations available to a customer for customizations.
Login to miniOrange admin console. Navigate to Settings icon on the top right corner of the header to view and enable any IDP global settings.

The following settings are available while configuring.

When you create an account with us, these 3 keys get generated for your account required for any API Calls for user operations/ 2FA integration using APIs, etc.

You can download the Account info from the Download icon beside the Account Details.

The following settings are available while On-Boarding a user. You can enable 'Allow user to register' setting from Customization --> Login and Registration Branding --> Basic settings.

Checking this option will force users to re-verify themselves periodically. You can choose when users will get notified about the re-verification and also when the re-verification window will expire, after which their accounts will be disabled automatically.

The Right to Erasure feature enables end users to schedule the deletion of their own accounts. This capability-based functionality allows organisations to comply with privacy and data protection requirements by providing users the ability to request self-account deletion.
Once a deletion request is raised, the account enters a scheduled deletion state and is automatically deleted after the configured retention period. Administrators can monitor, reject, or immediately delete accounts through the Account Deletion Requests management section.
Feature Configuration

To enable the self-account deletion functionality:
Note:
Following options are available in User Login & Logout preferences section.



Enable one or more of the following options:
Enable one or more of the following options:

Enable password reset using multi-factor authentication:


Note: Please follow this guide to know more and configure Password recovery methods.
The following options are available under Multi Factor Authentication settings.


Enabling this option will prevent the browser from saving passwords for enhanced security.
This feature allows administrators to configure and manage Content-Security-Policy (CSP) directives from the Security Controls section. CSP headers help secure applications by restricting which resources can be loaded and from where.
Common Configuration Examples
| Directive | Meaning | Example |
|---|---|---|
| Frame-Ancestors | Controls which sites can embed the application inside an iframe. | https://portal.partnercorp.com |
| Style-src | Allows loading stylesheets from trusted sources. | https://stackpath.bootstrapcdn.com |
| Img-src | Allows loading images from trusted domains. | https://images.pexels.com |
| Script-src | Allows loading JavaScript files from trusted sources. | https://www.recaptcha.net |
| Font-src | Allows loading fonts from trusted providers. | https://use.typekit.net |
| Connect-src (On-Premise only) | Allows API calls or backend connections to trusted endpoints. | https://api.github.com |
The UI also provides a Source List Reference section that explains supported CSP source values and their behavior.
The CSP directive behavior differs between Cloud and On-Premise deployments.

Note: If you are using a vanity URL, please contact miniOrange Support to whitelist your domain in order to enable CAPTCHA on your site.



It is recommended to change it to Error for production environments for best performance. Once you save the logging level there is no need to restart the server for changes to take effect but you should not perform this operation very frequently.
Note: 1. This option is available only for Main Admin and Super Admin accounts.
2. Any changes you make here are not persisted across server restarts. You will need to edit 'WEB-INF/classes/log4j.properties' to change levels permanently.

