releases.shpreview
Auth0/Auth0 Changelog

Auth0 Changelog

$npx -y @buildinternet/releases show auth0-changelog
Mon
Wed
Fri
AprMayJunJulAugSepOctNovDecJanFebMarApr
Less
More
Releases384Avg118/moVersionsv202547 → v202614
Sep 11, 2025

We are excited to share that Bulk User Import / Export is now available for everyone directly in the Auth0 Management Dashboard!

What’s New:

  • Streamlined experience: submit import / export jobs directly in the Dashboard UI - no Extension management required
  • Expanded RBAC support: now available to tenant members with Editor - Users Role in addition to Admin
  • Bulk update existing users: upserting pre-existing users in a connection is now available for manual import jobs
  • Export as a sample: quickly validate export file structure and field naming by exporting a sample file of 10 users

Deprecation Notice The Bulk Import / Export Extension will reach end of life in October 2025. We recommend switching to the new Dashboard experience as soon as possible.

For more information on the new Import/Export UI, please refer to Bulk User Import / Export in the Auth0 docs.

We’re excited to announce the General Availability of Tenant Access Control List (ACL), a security feature that helps you control who can access your tenant.

With Tenant ACL, you can create custom lists to allow, block, or redirect requests based on predefined signals – strengthening security and optimizing performance.

Key Benefits

  • Reduce Attack Surface: Block malicious traffic before it reaches your tenant
  • Enhance Security: Enforce access policies based on IPs, geolocation, user agents, ASN, and more
  • Optimize Performance: Redirect traffic to improve user experience

What’s New in GA

  • Enterprise customers: Create one Tenant ACL list
  • Attack Protection add-on customers: Create up to 10 Tenant ACL lists
  • Dashboard support: View, enable, and disable ACL lists directly from the Auth0 Dashboard

Learn More

We are excited to share that Bulk User Import / Export is now available for everyone directly in the Auth0 Management Dashboard!

What’s New:

  • Streamlined experience: submit import / export jobs directly in the Dashboard UI - no Extension management required
  • Expanded RBAC support: now available to tenant members with Editor - Users Role in addition to Admin
  • Bulk update existing users: upserting pre-existing users in a connection is now available for manual import jobs
  • Export as a sample: quickly validate export file structure and field naming by exporting a sample file of 10 users

Deprecation Notice The Bulk Import / Export Extension will reach end of life in October 2025. We recommend switching to the new Dashboard experience as soon as possible.

For more information on the new Import/Export UI, please refer to Bulk User Import / Export in the Auth0 docs.

We’re excited to announce the General Availability of Tenant Access Control List (ACL), a security feature that helps you control who can access your tenant.

With Tenant ACL, you can create custom lists to allow, block, or redirect requests based on predefined signals – strengthening security and optimizing performance.

Key Benefits

  • Reduce Attack Surface: Block malicious traffic before it reaches your tenant
  • Enhance Security: Enforce access policies based on IPs, geolocation, user agents, ASN, and more
  • Optimize Performance: Redirect traffic to improve user experience

What’s New in GA

  • Enterprise customers: Create one Tenant ACL list
  • Attack Protection add-on customers: Create up to 10 Tenant ACL lists
  • Dashboard support: View, enable, and disable ACL lists directly from the Auth0 Dashboard

Learn More

We are excited to share that Bulk User Import / Export is now available for everyone directly in the Auth0 Management Dashboard!

What’s New:

  • Streamlined experience: submit import / export jobs directly in the Dashboard UI - no Extension management required
  • Expanded RBAC support: now available to tenant members with Editor - Users Role in addition to Admin
  • Bulk update existing users: upserting pre-existing users in a connection is now available for manual import jobs
  • Export as a sample: quickly validate export file structure and field naming by exporting a sample file of 10 users

Deprecation Notice The Bulk Import / Export Extension will reach end of life in October 2025. We recommend switching to the new Dashboard experience as soon as possible.

For more information on the new Import/Export UI, please refer to Bulk User Import / Export in the Auth0 docs.

We’re excited to announce the General Availability of Tenant Access Control List (ACL), a security feature that helps you control who can access your tenant.

With Tenant ACL, you can create custom lists to allow, block, or redirect requests based on predefined signals – strengthening security and optimizing performance.

Key Benefits

  • Reduce Attack Surface: Block malicious traffic before it reaches your tenant
  • Enhance Security: Enforce access policies based on IPs, geolocation, user agents, ASN, and more
  • Optimize Performance: Redirect traffic to improve user experience

What’s New in GA

  • Enterprise customers: Create one Tenant ACL list
  • Attack Protection add-on customers: Create up to 10 Tenant ACL lists
  • Dashboard support: View, enable, and disable ACL lists directly from the Auth0 Dashboard

Learn More

We’re excited to announce the General Availability of Tenant Access Control List (ACL), a security feature that helps you control who can access your tenant.

With Tenant ACL, you can create custom lists to allow, block, or redirect requests based on predefined signals – strengthening security and optimizing performance.

Key Benefits

  • Reduce Attack Surface: Block malicious traffic before it reaches your tenant
  • Enhance Security: Enforce access policies based on IPs, geolocation, user agents, ASN, and more
  • Optimize Performance: Redirect traffic to improve user experience

What’s New in GA

  • Enterprise customers: Create one Tenant ACL list
  • Attack Protection add-on customers: Create up to 10 Tenant ACL lists
  • Dashboard support: View, enable, and disable ACL lists directly from the Auth0 Dashboard

Learn More

We are excited to share that Bulk User Import / Export is now available for everyone directly in the Auth0 Management Dashboard!

What’s New:

  • Streamlined experience: submit import / export jobs directly in the Dashboard UI - no Extension management required
  • Expanded RBAC support: now available to tenant members with Editor - Users Role in addition to Admin
  • Bulk update existing users: upserting pre-existing users in a connection is now available for manual import jobs
  • Export as a sample: quickly validate export file structure and field naming by exporting a sample file of 10 users

Deprecation Notice The Bulk Import / Export Extension will reach end of life in October 2025. We recommend switching to the new Dashboard experience as soon as possible.

For more information on the new Import/Export UI, please refer to Bulk User Import / Export in the Auth0 docs.

We’re excited to announce the General Availability of Tenant Access Control List (ACL), a security feature that helps you control who can access your tenant.

With Tenant ACL, you can create custom lists to allow, block, or redirect requests based on predefined signals – strengthening security and optimizing performance.

Key Benefits

  • Reduce Attack Surface: Block malicious traffic before it reaches your tenant
  • Enhance Security: Enforce access policies based on IPs, geolocation, user agents, ASN, and more
  • Optimize Performance: Redirect traffic to improve user experience

What’s New in GA

  • Enterprise customers: Create one Tenant ACL list
  • Attack Protection add-on customers: Create up to 10 Tenant ACL lists
  • Dashboard support: View, enable, and disable ACL lists directly from the Auth0 Dashboard

Learn More

We are excited to share that Bulk User Import / Export is now available for everyone directly in the Auth0 Management Dashboard!

What’s New:

  • Streamlined experience: submit import / export jobs directly in the Dashboard UI - no Extension management required
  • Expanded RBAC support: now available to tenant members with Editor - Users Role in addition to Admin
  • Bulk update existing users: upserting pre-existing users in a connection is now available for manual import jobs
  • Export as a sample: quickly validate export file structure and field naming by exporting a sample file of 10 users

Deprecation Notice The Bulk Import / Export Extension will reach end of life in October 2025. We recommend switching to the new Dashboard experience as soon as possible.

For more information on the new Import/Export UI, please refer to Bulk User Import / Export in the Auth0 docs.

We’re excited to announce the General Availability of Tenant Access Control List (ACL), a security feature that helps you control who can access your tenant.

With Tenant ACL, you can create custom lists to allow, block, or redirect requests based on predefined signals – strengthening security and optimizing performance.

Key Benefits

  • Reduce Attack Surface: Block malicious traffic before it reaches your tenant
  • Enhance Security: Enforce access policies based on IPs, geolocation, user agents, ASN, and more
  • Optimize Performance: Redirect traffic to improve user experience

What’s New in GA

  • Enterprise customers: Create one Tenant ACL list
  • Attack Protection add-on customers: Create up to 10 Tenant ACL lists
  • Dashboard support: View, enable, and disable ACL lists directly from the Auth0 Dashboard

Learn More

We are excited to share that Bulk User Import / Export is now available for everyone directly in the Auth0 Management Dashboard!

What’s New:

  • Streamlined experience: submit import / export jobs directly in the Dashboard UI - no Extension management required
  • Expanded RBAC support: now available to tenant members with Editor - Users Role in addition to Admin
  • Bulk update existing users: upserting pre-existing users in a connection is now available for manual import jobs
  • Export as a sample: quickly validate export file structure and field naming by exporting a sample file of 10 users

Deprecation Notice The Bulk Import / Export Extension will reach end of life in October 2025. We recommend switching to the new Dashboard experience as soon as possible.

For more information on the new Import/Export UI, please refer to Bulk User Import / Export in the Auth0 docs.

We are excited to share that Bulk User Import / Export is now available for everyone directly in the Auth0 Management Dashboard!

What’s New:

  • Streamlined experience: submit import / export jobs directly in the Dashboard UI - no Extension management required
  • Expanded RBAC support: now available to tenant members with Editor - Users Role in addition to Admin
  • Bulk update existing users: upserting pre-existing users in a connection is now available for manual import jobs
  • Export as a sample: quickly validate export file structure and field naming by exporting a sample file of 10 users

Deprecation Notice The Bulk Import / Export Extension will reach end of life in October 2025. We recommend switching to the new Dashboard experience as soon as possible.

For more information on the new Import/Export UI, please refer to Bulk User Import / Export in the Auth0 docs.

We’re excited to announce the General Availability of Tenant Access Control List (ACL), a security feature that helps you control who can access your tenant.

With Tenant ACL, you can create custom lists to allow, block, or redirect requests based on predefined signals – strengthening security and optimizing performance.

Key Benefits

  • Reduce Attack Surface: Block malicious traffic before it reaches your tenant
  • Enhance Security: Enforce access policies based on IPs, geolocation, user agents, ASN, and more
  • Optimize Performance: Redirect traffic to improve user experience

What’s New in GA

  • Enterprise customers: Create one Tenant ACL list
  • Attack Protection add-on customers: Create up to 10 Tenant ACL lists
  • Dashboard support: View, enable, and disable ACL lists directly from the Auth0 Dashboard

Learn More

Sep 9, 2025

We're excited to announce that API Access Policies for Applications is now in Early Access for all Auth0 customers and is fully supported for production use.

This feature enables you to control how applications access your APIs registered in Auth0. You can configure separate application API access policies for user access and client (machine-to-machine) flows, giving you declarative, granular and easy-to-reason control over which applications can obtain an access token for a specific API. For instance, with the require_client_grant policy, you can ensure that only explicitly authorized applications can get tokens, even during user flows. This strengthens your security posture by preventing unauthorized applications from accessing sensitive API resources on behalf of a user.

To learn more, check out the documentation.

We're excited to announce that API Access Policies for Applications is now in Early Access for all Auth0 customers and is fully supported for production use.

This feature enables you to control how applications access your APIs registered in Auth0. You can configure separate application API access policies for user access and client (machine-to-machine) flows, giving you declarative, granular and easy-to-reason control over which applications can obtain an access token for a specific API. For instance, with the require_client_grant policy, you can ensure that only explicitly authorized applications can get tokens, even during user flows. This strengthens your security posture by preventing unauthorized applications from accessing sensitive API resources on behalf of a user.

To learn more, check out the documentation.

We're excited to announce that API Access Policies for Applications is now in Early Access for all Auth0 customers and is fully supported for production use.

This feature enables you to control how applications access your APIs registered in Auth0. You can configure separate application API access policies for user access and client (machine-to-machine) flows, giving you declarative, granular and easy-to-reason control over which applications can obtain an access token for a specific API. For instance, with the require_client_grant policy, you can ensure that only explicitly authorized applications can get tokens, even during user flows. This strengthens your security posture by preventing unauthorized applications from accessing sensitive API resources on behalf of a user.

To learn more, check out the documentation.

We're excited to announce that API Access Policies for Applications is now in Early Access for all Auth0 customers and is fully supported for production use.

This feature enables you to control how applications access your APIs registered in Auth0. You can configure separate application API access policies for user access and client (machine-to-machine) flows, giving you declarative, granular and easy-to-reason control over which applications can obtain an access token for a specific API. For instance, with the require_client_grant policy, you can ensure that only explicitly authorized applications can get tokens, even during user flows. This strengthens your security posture by preventing unauthorized applications from accessing sensitive API resources on behalf of a user.

To learn more, check out the documentation.

We're excited to announce that API Access Policies for Applications is now in Early Access for all Auth0 customers and is fully supported for production use.

This feature enables you to control how applications access your APIs registered in Auth0. You can configure separate application API access policies for user access and client (machine-to-machine) flows, giving you declarative, granular and easy-to-reason control over which applications can obtain an access token for a specific API. For instance, with the require_client_grant policy, you can ensure that only explicitly authorized applications can get tokens, even during user flows. This strengthens your security posture by preventing unauthorized applications from accessing sensitive API resources on behalf of a user.

To learn more, check out the documentation.

We're excited to announce that API Access Policies for Applications is now in Early Access for all Auth0 customers and is fully supported for production use.

This feature enables you to control how applications access your APIs registered in Auth0. You can configure separate application API access policies for user access and client (machine-to-machine) flows, giving you declarative, granular and easy-to-reason control over which applications can obtain an access token for a specific API. For instance, with the require_client_grant policy, you can ensure that only explicitly authorized applications can get tokens, even during user flows. This strengthens your security posture by preventing unauthorized applications from accessing sensitive API resources on behalf of a user.

To learn more, check out the documentation.

Latest
Apr 21, 2026
Tracking Since
Sep 25, 2024
Last checked Apr 22, 2026