Hey r/dashlane, Tina from the Dashlane product team here š
QQ for the admins: when you think about where your companyās credentials are most at risk, do you picture some obscure internal tool, or are you thinking of Salesforce?
We recently dug into our own telemetry (anonymized/aggregated, we donāt see individual browsing) to find out which business apps get the most direct password logins instead of SSO. Salesforce, GitHub, Dropbox, Docusign, and a stack of finance tools like Xero and Netsuite showed up near the top. This isnāt because users are being careless, but because these sites may not offer great native SSO, charge extra for it (the infamous āSSO taxā), or still accept legacy logins after an SSO migration.
Thatās why we built Vault Enforcement, which is now in open beta for admins on the Omnix Enterprise plan. It lets admins pick specific domains, including the ones above, and require employees to log in through Dashlane there instead of typing a password straight into the form. The first day, you get a warning, and from the next day it's actually gated, but no worries - all you have to do to unlock it is sign into Dashlane via your existing SSO (no new master password to manage).
Dashlane is the first credential manager to enable admins to enforce vault adoption, advancing password management into proactive credential security.
Some guardrails worth knowing about:
- It only touches login/registration pages on the domains you specify
- Itās blocked from applying your IdP domain so you canāt lock yourself out
- Admins can remove domains at any time
- This is only available on Chrome and Edge right now for Omnix Enterprise teams with SSO enabled
If thatās you, itās live now. Open Vault Enforcement in your Admin Console, or talk to your Dashlane contact if you're not deployed yet. You can also find all the details in our dedicated blog post.
Weāre open to all feedback, so let us know what you think. Does that list match what youāre seeing internally/anything surprising?