Session timeouts help protect your organisation’s data by automatically logging users out of Oak after a period of inactivity. We strongly recommend keeping session timeouts enabled.
System Managers can manage session timeout settings by going to Actions > Configure > Site Settings > Sessions. While timeout periods can be extended, this should be done with caution, as longer sessions increase the risk of unauthorised access if a device is left unattended.
We do not recommend extending session timeouts for Site Administrators, users with elevated permissions, or anyone using a public or shared device. Turning session timeouts off entirely will prevent users from being logged out after periods of inactivity and may increase security risks.