Skip to content
Documentation

    Trusted Domains

    Hub keeps two different allowlists here. Internal email domains decide which company email domains can receive internal access when a portal enables that option. Trusted domains for embedded content decide which secure websites may host authenticated embeds. Add a domain to the list that matches the access problem you are solving; the two lists are not interchangeable.

    Internal email domains simplify access management for your organisation’s portals. Instead of adding company domains to each portal, Hub administrators define one global list of approved domains.

    1. Navigate to the global Settings > Trusted domains via the overview page or the workspace dropdown within a workspace.

    2. Click the Add domain button in the internal email domains section

    3. Add your internal email domains. For example: example.com

    Verified User Tokens and manual sign-in are only supported for embeds served from domains on this allowlist and only when the hosting page uses HTTPS. Add the origin of the page that contains the embed, not the Released URL. This prevents an authenticated embed from being reused on an unapproved site.

    1. Navigate to the global Settings > Trusted domains via the overview page or the workspace dropdown within a workspace.

    2. Click the Add domain button in the trusted domains for embedded content section

    3. Add your trusted domains. For example: example.com