Incorrect redirect when IdP-Initiated SSO is blocked
Incident Report for WorkOS
Resolved
This incident only affected customers who have IdP-Initiated SSO disabled.

From Mar 14th at 3:17pm PT until Mar 15th at 12:23pm PT, users who were blocked from IdP-Initiated SSO were redirected to a WorkOS error page instead of the default redirect_uri provided

This issue was introduced during a refactor designed to improve our error experience. IdP-Initiated SSO is disabled for a small subset of our customers, and this issue was not caught as part of our release process. We have since updated the new service to account for this behavior.

To prevent similar issues in the future, we’ve made improvements to our testing processes and are also improving our tracking of features that are enabled for a limited set of customers, such as "Disabling IdP-initiated SSO"
Posted Mar 14, 2023 - 18:00 EDT