Smart Sign-in is a secure and seamless way to sign-in to your Zoho account just by scanning a QR Code using Authenticator app - OneAuth. No need to type in your username or password.
How to use Smart Sign-in

Important: You need Zoho's
Authenticator app - OneAuth (v3.1 or higher) on your mobile device, signed in with your Zoho account to use Smart Sign-in. You can install the authenticator app on your mobile device using this link -
Install Authenticator - OneAuth. Once you've done this, sign in to your account using your username and password.
Once you have the OneAuth app on your mobile device with your Zoho account:
- Go to the Zoho sign-in page on your browser.
- Click Try smart sign-in. A QR code will be displayed.
- Open Authenticator app - OneAuth on your mobile device.
- In the MFA tab, tap Smart Sign-in.
- Scan the QR code. You will be signed in to your Zoho account.
FAQs
1. Will enforced password changes by my organization affect Smart Sign-in?
No, this will not affect it. You can continue to use Smart Sign-in. A password change is not required as long as you use only the Smart Sign-in to sign in. However, if you use your password to sign in, you will be required to change the password after a set period of time as enforced by your organization.
2. Can I use Smart Sign-in when my mobile device is in a different IP address than the IP restriction enabled for my account?
No. To use Smart Sign-in, both your mobile device and the browser you're trying to sign in should be in the configured IP address. If any of the devices are not in the respective IP address, you cannot use Smart Sign-in to sign in to your account.
Troubleshooting
I can't see the Smart Sign-in option in OneAuth
- Smart Sign-in is available only from v3.1. If you're using the old version, you won't be able to use Smart Sign-in. Update to the latest version to use the Smart Sign-in.
- If your organization has enforced custom SSO authentication like SAML, JWT, or federated sign-in options, you won't be able to use Smart Sign-in, and the option will not be available. Please contact your administrator for further clarification.
- If you have enabled Restrict Sign-in you won't be able to sign in with smart sign-in and the option will not appear.
I'm getting 'Smart Sign-in not allowed' error in OneAuth
Possible Reasons | What to do |
If your organization has enforced other MFA modes (such as OTP based MFA mode, Security Key or OTP Authenticator) and not OneAuth, You cannot use Smart Sign-in. Learn about different MFA modes
| Your organization needs to allow OneAuth as an MFA mode, in order for you to use Smart Sign-in. Contact your administrator for further clarification. |
| If you have personally configured other MFA modes (such as OTP based MFA mode, Security Key or OTP Authentication) and not OneAuth MFA, you cannot use Smart Sign-in. | You need to switch to OneAuth MFA mode to use the Smart Sign-in. |
| If you have more than one mobile device signed-in to your Zoho account, and have enabled OneAuth MFA in one of the device, then you can only use Smart Sign-in on MFA enabled device and not on other devices. | If you don't have access to your OneAuth MFA enabled device (i.e., Primary Device) you need to make one of your signed-in mobile device as your secondary MFA device.
- Open OneAuth on your signed-in mobile device.
- Select Make the device secondary to make it a secondary OneAuth device MFA device.
Alternatively, you can make this device as Primary if you need.
Once done, you can use Smart Sign-in like you usually do.
If you have already set up both primary and secondary device, but don't have access to them, you can repeat the above process on one of your other signed-in devices to make it a primary or secondary device and can use the smart sign-in. |
| If IP restriction is enabled, Smart Sign-in will not work if you try to sign in from a different IP address than configured. | If you have enabled the IP restriction, try to sign-in from the allowed IP address, or remove/disable the IP restriction. Learn more
If your organization has enforced IP restrictions, you need to contact your administrator for further clarification. |