We have both SSO login and non-SSO login Miro users without our org. The current password requirements for non-SSO login users on Miro do not align with standard corporate security requirements (combination of uppercase letters, lowercase letters, numbers, and symbols, etc.), which can leave these accounts and company data vulnerable.
That being said, there are two things that we’re looking for:
- Password complexity and stricter requirements
- Automatic password expiry after a set duration of time (e.g., every year), or the option to manually force password reset from enterprise settings