Secure your Account API with ACR EA
UpdateUnverifiedAdded Sep 24, 2026
Auth0's ACR EA release empowers you to secure Account API token issuance by enforcing step-up authentication for sensitive scopes. Whether your users are managing their authentication factors via Universal Login or Embedded flows, you can now gate access through Actions-driven policies or enable a secure-by-default toggle.
Topics: Governance, Security, Developer tools
More Auth0 releases
Every Auth0 release| Date | Release | Type |
|---|---|---|
| May 13 | Non-Unique Emails is Now Generally Availableunverified GA | GA |
| May 11 | Online Refresh Tokens is now in Betaunverified Beta | Beta |
| May 6 | Fix for Empty login_hint Parameter on External Identity Providers Requestsunverified Update | Update |
| May 6 | Resend Email Provider is now Generally Availableunverified GA | GA |
| May 6 | Auth for MCP is now Generally Availableunverified GA | GA |
| May 19 | Suspicious IP Throttling for Custom Token Exchangeunverified Update | Update |
| May 5 | Support for Private Key JWT assertions and additional signing algorithms on Okta and OIDC enterprise connectionsunverified GA | GA |
| May 5 | "CMD+K" available now on Auth0 Dashboardunverified Update | Update |
Also shipped on May 12, 2026
Okta in May 2026| Date | Company | Release | Product | Type |
|---|---|---|---|---|
| May 12 | Introducing Generative Data Appsunverified | Hex | Beta | |
| May 12 | Shopify App Pricing: charge for usage, recurring subscriptions, or bothunverified | Shopify developer platform | Pricing | |
| May 12 | Nova-3 Multilingual Model Updateunverified | Deepgram | Update | |
| May 12 | Dify 1.14.1 - Security hardening, workflow stability, and cleaner self-hosted deploymentsunverified | Dify | Update | |
| May 12 | Cloudflare One, Access - Refreshed Access login pageunverified | Cloudflare developer platform | Update | |
| May 12 | Cloudflare WAN, Magic Transit, Cloudflare One - New accounts assigned a single IPv4 anycast addressunverified | Cloudflare developer platform | Update |
Sources: each vendor's own release notes, changelogs and GitHub releases, read daily to monthly by how often it posts. Logos via logo.dev; trademarks belong to their owners.