Security | Blog | PropelAuth

Announcing MCP Authentication: secure your MCP servers with PropelAuth

OAuth 2.1 in Simple Terms

If you’ve ever searched for OAuth (or OAuth2 or OpenID connect/OIDC), you’ve probably been greeted with a picture that looks like this:
along with some descriptions of resource servers, the difference between authentication and authorization, consent screens, token endpoints, and more.

SSO vs SAML

Why single sign-on matters, what SAML actually is, and how to keep your customers happy (and secure)

The TL;DR

Announcing User Impersonation in PropelAuth

We are incredibly excited today to announce that User Impersonation support is now live in PropelAuth!

PropelAuth’s Annual Security Audit (2023)

PropelAuth is deeply committed to the security of data within our platform. We have features like 2FA, enterprise SSO/SAML, brute force detection, cus...

What Does Timing Attack Actually Mean?

Timing attacks
Timing attacks are a class of malicious attacks against a product where the length of time that your application takes to perform a ta...

What Does Authorization Actually Mean?

The word “auth” is complicated because there are a wide range of topics that fall in the bucket of “auth.” In this series, we’ll take a practical appro...

What Does Identity Provider Actually Mean?

When it comes to online security and authentication, the term "Identity Provider" is often thrown around. But what does it actually mean? In simple te...

What Does 2FA Actually Mean?

Amongst the crowd of acronyms in the authentication space, 2FA, or Two Factor Authentication, seems to be one of the more self explanatory names. But ...

What Does Passwordless Actually Mean?

Passwords have been around for a long time, and while they are easy to understand, they do come with some drawbacks. They are essential for keeping ou...

What Does SSO Actually Mean?

Before answering the question at hand, you should know that you’ve probably used SSO already. Any time you’ve signed up for or logged into a product u...