API · SDK · runtime · authentication lifecycle intelligence

Last updated · 9 September 2026

SchemaTrace

Breaking changes, enforcement dates and migration requirements.

ST-2026-182 · Authentication & identity

Auth0 Flexible Password Policy reaches general availability

Auth0 made Flexible Password Policy generally available on 13 August 2026 for database connections, with new connections using the current options.password_options policy model while existing connections remain unchanged.

Auth0Flexible Password Policydatabase connectionspassword policygeneral availability

Previous state

Auth0 database connections used the legacy password-policy configuration model, while Flexible Password Policy had not yet reached general availability.

Current state

Flexible Password Policy is generally available and new database connections use the options.password_options configuration model for current password-policy controls.

Who needs to care

Auth0 administrators and automation that create or update database connections and manage password-policy settings.

What to do

Update connection-management automation to use options.password_options for new Flexible Password Policy configuration and avoid sending the current and legacy password-policy fields together in one update.

What the source does not prove

Existing database connections are unchanged. Auth0 continues to support legacy password policies and states no end-of-life date for them; this event is general availability and a configuration-model transition for new connections, not a legacy-policy retirement.

Lifecycle history

Dated event sequence

  1. Flexible Password Policy reached GA

    Auth0 announced general availability and documented the current options.password_options model for new database connections.

Evidence ledger

First-party sources

  1. 01
    Auth0 — Flexible Password Policy is now Generally Available

    Official Auth0 changelog · 2026-08-13

    Open official source ↗