Documentation › Configure
Signing in: Google, GitHub or email
Continue with Google if you have no GitHub account, connect or disconnect Google from your Profile, and how admins turn it on.
Cloud Buddy offers up to three ways in: Continue with Google (for business owners, accountants and anyone without a GitHub account), Continue with GitHub (developers: it also lets Cloud Buddy list your repositories and report build status) and an email and password.
Continue with Google
Pick your Google account: a new account is created with its verified address, if the platform accepts new sign-ups.
The platform may only accept some email domains (for example your company's): other Google accounts are refused.
If an account with the same email already exists, Google is connected to it only when that address was already confirmed and the account has no two-factor. Otherwise sign in the usual way and connect Google from your Profile: nobody can take over an account just by owning a Google account with the same address.
With two-factor on, you are asked for your authenticator code after Google too.
Connected accounts
Profile → Connected accounts shows how you can sign in. Connect Google needs a sign-in from the last 30 minutes (and, with two-factor on, a current code), then you pick the Google account; it can use another address than your Cloud Buddy account. Disconnect removes it, except when it is your only way to sign in. Every sign-in, connection and disconnection is in the platform's audit trail.
Turning on Google sign-in (platform admins)
Create a Google Cloud project In Google Cloud Console, create a project for the platform (or reuse one).
Set up the consent screen Google Auth Platform → Branding: app name, support email, logo, home page, privacy and terms links, and your domain as an authorized domain. Audience: External, then Publish app.
Create a web client Clients → Create client → Web application, with the authorized redirect URI https://cloud.knovadigital.com/api/auth/google/callback (shown with a copy button on the Platform page).
Save it on the Platform page Platform → Sign-in methods: paste the client ID and secret, optionally the allowed email domains, save, and turn Continue with Google on.
The secret is stored encrypted and never shown again. New Google accounts also need Let new customers sign up on (Sign-ups and sign-in security).