Sign in and single sign-on
All Kariant sign-ins run through hq.kariant.app. One successful sign-in establishes a shared session across Kariant surfaces.
Ways to sign inlink
HQ supports several sign-in methods from one screen. Pick whichever suits you — you can add more methods to your account later from the security console.
- check_circleEmail and password.
- check_circleMagic link — a one-tap sign-in link sent to your email.
- check_circleEmail one-time passcode (OTP) — each code is valid for 10 minutes.
- check_circleMobile OTP by SMS, with WhatsApp OTP available where enabled.
- check_circleSocial sign-in with supported providers (for example Google).
- check_circleOrganization SSO, where your company has configured it.
How SSO behaveslink
When you click Sign in on any Kariant product, you are brought to HQ (branded for the product you came from), you authenticate once, and you are returned to where you started. The session is shared across kariant.app subdomains, so moving between products does not prompt you again.
If you are already signed in on another Kariant surface, HQ offers a one-tap “Continue as you” instead of asking for credentials again.
Two-step verification at sign-inlink
If your account has two-factor authentication enabled, HQ asks for a second step after your credentials. With one second factor enrolled it is requested directly; with more than one, a chooser lets you pick “Authenticator app” or “Text message”.
Picking the text-message option sends the code to your enrolled phone automatically, with a resend button after a short cooldown. Authenticator codes come from your app — enter the current 6-digit code.
If your organization requires company SSOlink
When your email belongs to a company domain whose organization mandates single sign-on, HQ shows “Your organization requires single sign-on” with a Continue-with-SSO button, and the password, code, and Google options are removed for that account. The Google button cannot bypass this — it routes you to your company sign-in as well.
If you get stucklink
- check_circleA wrong email or password always shows the same message — “Incorrect email or password” — without revealing which part failed or whether an account exists. Check both, or use “Forgot password”.
- check_circleIf you see “An account already exists … using a different sign-in method”, sign in the way you originally signed up (the message names the affected email); you can link the new method afterwards from the security console.
- check_circleUse “Forgot password” on the sign-in screen to start a reset by email. Reset links are checked before the new-password form appears — an expired or already-used link shows a clear message with a one-click way to request a fresh one.
- check_circlePasswords must be at least 12 characters; the same minimum applies everywhere you set or reset one.
- check_circleMagic-link and reset emails come from Kariant — check spam if one does not arrive within a couple of minutes.
- check_circleAccount recovery is stronger when you have added a backup email or phone in the security console.
Frequently asked questions
Why was I redirected to hq.kariant.app when signing in?expand_more
That is by design. HQ is the central sign-in surface for the whole platform — a product’s own sign-in page shows a brief “Redirecting to secure sign-in…” screen, you authenticate on HQ, and you are returned to where you started.
Can partners and admins use HQ too?expand_more
Yes. HQ serves every persona — user, partner, and admin accounts all manage identity, security, and privacy here.