Features

Sign-in & security — fits your organisation

Some organisations live in Microsoft 365, others deliberately avoid external identity providers. accora supports both, configurable per organisation and without compromising security.

Sign-in and protection in detail

Local sign-in with two-factor

E-mail, password and a one-time code as the second factor. Entirely without external identity services, if that is what you want.

Single sign-on with Microsoft

Sign-in via Microsoft Entra ID, enabled per organisation. One tenant, one click by your IT, and staff sign in with their familiar account.

Invitations instead of self-signup

Accounts only come into existence by invitation, individually by e-mail or for the whole Microsoft tenant. Nobody registers unnoticed.

Password reset without detours

Users reset their password themselves via "Forgot password?", administrators can trigger the reset when needed. The new password is known only to the person.

Strict tenant separation

Each organisation has its own members, roles, courses and data. Anyone working in several organisations switches via the menu, without data ever mixing.

State-of-the-art security

Encrypted transport, brute-force protection through lockouts and rate limiting, security-checked uploads and an audit log for administrative actions.

SSO yes, lock-in no

Single sign-on via Microsoft Entra ID takes account management off the plate of schools and companies on Microsoft 365: IT connects the tenant once, after that everyone signs in with their existing account. Those who do not use Microsoft, or deliberately avoid it, use the local sign-in with two-factor authentication. Both paths can coexist within the same organisation.

The way in is controlled

There is no open registration. Members join by invitation, with a role and, if you wish, directly assigned to a group. Open invitations are visible and revocable, accepted ones become ordinary members with traceable permissions.

Hosted in Germany

accora runs on infrastructure in Germany, and personal data stays here. A data processing agreement under Art. 28 GDPR is part of the package, as is the absence of tracking and ad cookies on all pages.

Frequently asked questions

Do we need Microsoft 365 to use accora?

No. The local sign-in with two-factor authentication is fully featured and the standard for many organisations. SSO is an offer, not a requirement.

What happens when someone forgets their password?

The sign-in page has "Forgot password?": the user receives a time-limited link by e-mail and sets a new password themselves. Administrators can trigger the same flow for a member, without ever seeing the password.

Can one account belong to several organisations?

Yes. An account can be a member of several organisations and switches between them in the profile menu. Roles and data remain separate per organisation.

How does accora protect against unauthorised access?

In layers: two-factor sign-in, account lockouts after failed attempts, rate limiting on sensitive endpoints, strict permission checks on the server and an audit log for administrative actions.

Does accora fit your IT landscape?

Tell us briefly how your organisation signs in today and we will show you the path that fits.